Vulnerability Description
Hummingbird CyberDOCS 3.5, 3.9, and 4.0, when running on IIS, uses insecure permissions for script source code files, which allows remote attackers to read the source code.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hummingbird | Cyberdocs | 3.5 |
References
- http://secunia.com/advisories/9985Patch
- http://www.kb.cert.org/vuls/id/989580PatchThird Party AdvisoryUS Government Resource
- http://www.procheckup.com/security_info/vuln_pr0302.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/13397
- http://secunia.com/advisories/9985Patch
- http://www.kb.cert.org/vuls/id/989580PatchThird Party AdvisoryUS Government Resource
- http://www.procheckup.com/security_info/vuln_pr0302.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/13397
FAQ
What is CVE-2003-1102?
CVE-2003-1102 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Hummingbird CyberDOCS 3.5, 3.9, and 4.0, when running on IIS, uses insecure permissions for script source code files, which allows remote attackers to read the source code.
How severe is CVE-2003-1102?
CVE-2003-1102 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-1102?
Check the references section above for vendor advisories and patch information. Affected products include: Hummingbird Cyberdocs.