Vulnerabilities > CVE-2002-1079 - Directory Traversal vulnerability in Aprelium Technologies Abyss web Server 1.0.3P2

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
aprelium-technologies
exploit available

Summary

Directory traversal vulnerability in Abyss Web Server 1.0.3 allows remote attackers to read arbitrary files via ..\ (dot-dot backslash) sequences in an HTTP GET request.

Vulnerable Configurations

Part Description Count
Application
Aprelium_Technologies
1

Exploit-Db

descriptionAbyss Web Server 1.0 Encoded Backslash Directory Traversal Vulnerability. CVE-2002-1079. Remote exploit for windows platform
idEDB-ID:21735
last seen2016-02-02
modified2002-08-22
published2002-08-22
reporterAuriemma Luigi
sourcehttps://www.exploit-db.com/download/21735/
titleAbyss Web Server 1.0 Encoded Backslash Directory Traversal Vulnerability