Vulnerabilities > CVE-2006-6814 - Directory Traversal vulnerability in Hosting Controller Hosting Controller 7C

047910
CVSS 6.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
NONE
Availability impact
NONE
network
hosting-controller
exploit available

Summary

Directory traversal vulnerability in FolderManager/FolderManager.aspx in Hosting Controller 7c allows remote authenticated users to read and modify arbitrary files, and list arbitrary directories via ..\ (dot dot backslash) sequences in the BrowsePath parameter.

Vulnerable Configurations

Part Description Count
Application
Hosting_Controller
1

Exploit-Db

descriptionHosting Controller 7C FolderManager.ASPX Directory Traversal Vulnerability. CVE-2006-6814. Webapps exploit for asp platform
idEDB-ID:29357
last seen2016-02-03
modified2006-12-27
published2006-12-27
reporterKAPDA
sourcehttps://www.exploit-db.com/download/29357/
titleHosting Controller 7C FolderManager.ASPX Directory Traversal Vulnerability