5
CVSSv2

CVE-2001-0780

Published: 18/10/2001 Updated: 25/05/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in cosmicpro.cgi in Cosmicperl Directory Pro 2.0 allows remote malicious users to gain sensitive information via a .. (dot dot) in the SHOW parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

cosmicperl directory pro 2.0

Exploits

source: wwwsecurityfocuscom/bid/2793/info Webdirectory Pro is a web application used to create a searchable directory of links developed by Cosmicperl Webdirectory Pro contains an input validation vulnerability which may lead to disclosure of sensitive information to attackers The value of the 'show' variable is not properly validated ...