Vulnerabilities > CVE-2003-1172 - Directory Traversal vulnerability in Apache Cocoon 2.1/2.1.2/2.2

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
apache
exploit available

Summary

Directory traversal vulnerability in the view-source sample file in Apache Software Foundation Cocoon 2.1 and 2.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the filename parameter.

Vulnerable Configurations

Part Description Count
Application
Apache
3

Exploit-Db

descriptionApache Cocoon 2.14/2.2 Directory Traversal Vulnerability. CVE-2003-1172. Remote exploits for multiple platform
idEDB-ID:23282
last seen2016-02-02
modified2003-10-24
published2003-10-24
reporterThierry De Leeuw
sourcehttps://www.exploit-db.com/download/23282/
titleapache cocoon 2.14/2.2 - Directory Traversal Vulnerability