CVE-2003-0676

Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via "..%2f" (partially encoded dot dot) sequences.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sun:iplanet_directory_server:5.0:*:*:*:*:*:*:*
cpe:2.3:a:sun:iplanet_directory_server:5.1:*:*:*:*:*:*:*
cpe:2.3:a:sun:iplanet_directory_server:5.1:sp1:*:*:*:*:*:*
cpe:2.3:a:sun:iplanet_directory_server:5.1:sp2:*:*:*:*:*:*
cpe:2.3:a:sun:one_directory_server:5.0:*:*:*:*:*:*:*
cpe:2.3:a:sun:one_directory_server:5.0:sp1:*:*:*:*:*:*
cpe:2.3:a:sun:one_directory_server:5.0_sp2:*:*:*:*:*:*:*
cpe:2.3:a:sun:one_directory_server:5.1:*:*:*:*:*:*:*
cpe:2.3:a:sun:one_directory_server:5.1:sp1:*:*:*:*:*:*
cpe:2.3:a:sun:one_directory_server:5.1:sp2:*:*:*:*:*:*

History

20 Nov 2024, 23:45

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=106036588613929&w=2 - () http://marc.info/?l=bugtraq&m=106036588613929&w=2 -

Information

Published : 2003-08-27 04:00

Updated : 2024-11-20 23:45


NVD link : CVE-2003-0676

Mitre link : CVE-2003-0676

CVE.ORG link : CVE-2003-0676


JSON object : View

Products Affected

sun

  • iplanet_directory_server
  • one_directory_server