CVE-2003-1168
CVE-2003-1168 | |
Description | HTTP Commander 4.0 allows remote attackers to obtain sensitive information via an HTTP request that contains a . (dot) in the file parameter, which reveals the installation path in an error message. |
Impact |
CVSS v2 : 5 MEDIUM
|
Type | |
Attack Vector |
CVSSv2 Vector : AV:N/AC:L/Au:N/C:P/I:N/A:N |
Quick links | CVE, NVD, CERT, Metasploit, Exploit-db, Fulldisc, Bugtraq, Microsoft, Red Hat, Debian, GitHub code/issues, Google |
References |