Vulnerability Description
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with administrator privileges to (1) determine the installation path by reading the contents of the Name parameter in a link, and (2) read arbitrary files via an absolute path in the Name parameter.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | All Windows | All versions |
| Alt-N | Webadmin | 2.0.0 |
Related Weaknesses (CWE)
References
- http://securityreason.com/securityalert/3286
- http://www.securityfocus.com/archive/1/319735
- http://www.securityfocus.com/bid/7438
- http://www.securityfocus.com/bid/7439
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11874
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11875
- http://securityreason.com/securityalert/3286
- http://www.securityfocus.com/archive/1/319735
- http://www.securityfocus.com/bid/7438
- http://www.securityfocus.com/bid/7439
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11874
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11875
FAQ
What is CVE-2003-1463?
CVE-2003-1463 is a vulnerability with a CVSS score of 3.5 (LOW). Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with administrator privileges to (1) determine the installation path by reading the con...
How severe is CVE-2003-1463?
CVE-2003-1463 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-1463?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft All Windows, Alt-N Webadmin.