Vulnerabilities > CVE-2003-1248 - Unspecified vulnerability in Positive Software H-Sphere 2.3Rc3

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
positive-software

Summary

H-Sphere WebShell 2.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) mode and (2) zipfile parameters in a URL request.

Vulnerable Configurations

Part Description Count
Application
Positive_Software
1