Lucene search

K
cve[email protected]CVE-2003-0536
HistoryAug 18, 2003 - 4:00 a.m.

CVE-2003-0536

2003-08-1804:00:00
web.nvd.nist.gov
30
phpsysinfo
vulnerability
directory traversal
cve-2003-0536
nvd
denial of service

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:N/A:P

6.3 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

23.8%

Directory traversal vulnerability in phpSysInfo 2.1 and earlier allows attackers with write access to a local directory to read arbitrary files as the PHP user or cause a denial of service via … (dot dot) sequences in the (1) template or (2) lng parameters.

Affected configurations

NVD
Node
phpsysinfophpsysinfoMatch2.0
OR
phpsysinfophpsysinfoMatch2.1

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:N/A:P

6.3 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

23.8%