10
CVSSv2

CVE-2002-0773

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

imp_rootdir.asp for Hosting Controller allows remote malicious users to copy or delete arbitrary files and directories via a direct request to imp_rootdir.asp and modifying parameters such as (1) ftp, (2) owwwPath, and (3) oftpPath.

Vulnerable Product Search on Vulmon Subscribe to Product

hosting controller hosting controller 1.4.1

hosting controller hosting controller 1.4b

hosting controller hosting controller 1.1

hosting controller hosting controller 1.4

hosting controller hosting controller 1.3

Exploits

source: wwwsecurityfocuscom/bid/4761/info Hosting Controller is an application which consolidates all hosting tasks into one interface Hosting Controller runs on Microsoft Windows operating systems The Import Root Directory (imp_rootdirasp) script does not force an authentication challenge when accessed, and allows users to perform ac ...