Vulnerabilities > CVE-2003-1298 - Unspecified vulnerability in Anyportal PHP Anyportal PHP 0.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple directory traversal vulnerabilities in siteman.php3 in AnyPortal(php) 12 MAY 00 allow remote attackers to (1) create, (2) delete, (3) save, and (4) upload files by navigating to the root directory and entering a filename beginning with "./.." (dot slash dot dot).
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://nger.org/anyportal/forum/read.php?f=1&i=152&t=152#reply_152
- http://nger.org/anyportal/forum/read.php?f=1&i=152&t=152#reply_152
- http://secunia.com/advisories/19359
- http://secunia.com/advisories/19359
- http://www.osvdb.org/23984
- http://www.osvdb.org/23984
- http://www.securityfocus.com/bid/17197
- http://www.securityfocus.com/bid/17197
- http://www.vupen.com/english/advisories/2006/1053
- http://www.vupen.com/english/advisories/2006/1053
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25396
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25396