Vulnerability Description
PeopleSoft Gateway Administration servlet (gateway.administration) in PeopleTools 8.43 and earlier allows remote attackers to obtain the full pathnames for server-side include (SSI) files via an HTTP request with an invalid value.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Peoplesoft | Peopletools | 8.4 |
References
FAQ
What is CVE-2003-0628?
CVE-2003-0628 is a vulnerability with a CVSS score of 5.0 (MEDIUM). PeopleSoft Gateway Administration servlet (gateway.administration) in PeopleTools 8.43 and earlier allows remote attackers to obtain the full pathnames for server-side include (SSI) files via an HTTP ...
How severe is CVE-2003-0628?
CVE-2003-0628 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-0628?
Check the references section above for vendor advisories and patch information. Affected products include: Peoplesoft Peopletools.