5
CVSSv2

CVE-2008-0481

Published: 29/01/2008 Updated: 15/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in RTE_file_browser.asp in Web Wiz Rich Text Editor 4.0 allows remote malicious users to list arbitrary directories, and .txt and .zip files, via a .....\\\ in the sub parameter in a save action.

Vulnerable Product Search on Vulmon Subscribe to Product

web wiz rich text editor 4.0

Exploits

########################## WwWBugReportir ########################################### # # AmnPardaz Security Research Team # # Title: Web Wiz Rich Text Editor(TM) # Vendor: wwwwebwizguidecom/ # Bug: Directory traversal + HTM/HTML file creation on the server # Vulnerable Version: 40 # Exploit: Available # Fix Available: No! Fast Sol ...