Vulnerabilities > CVE-2003-1166 - Unspecified vulnerability in Http Commander Http Commander 4.0

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
http-commander
exploit available

Summary

Directory traversal vulnerability in (1) Openfile.aspx and (2) Html.aspx in HTTP Commander 4.0 allows remote attackers to view arbitrary files via a .. (dot dot) in the file parameter.

Vulnerable Configurations

Part Description Count
Application
Http_Commander
1

Exploit-Db

descriptionHTTP Commander 4.0 Directory Traversal Vulnerability. CVE-2003-1166. Webapps exploit for asp platform
idEDB-ID:23326
last seen2016-02-02
modified2003-11-01
published2003-11-01
reporterZero X
sourcehttps://www.exploit-db.com/download/23326/
titlehttp commander 4.0 - Directory Traversal Vulnerability