5
CVSSv2

CVE-2003-0277

Published: 16/06/2003 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote malicious users to read arbitrary files via .. (dot dot) sequences in the file parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

happycgi happymall 4.3

happycgi happymall 4.4

Exploits

source: wwwsecurityfocuscom/bid/7559/info IT has been reported that Happymall E-Commerce is prone to a file disclosure vulnerability The problem occurs due to insufficient sanitization of user-supplied URI parameters As a result, it may be possible for an attacker to view the contents of sensitive system files Files viewed in this mann ...