CVE-2003-1166

MEDIUM
CVSS v3
5.0CVSS v2
4.82% EPSS (exploit probability)
CWE

Description

Directory traversal vulnerability in (1) Openfile.aspx and (2) Html.aspx in HTTP Commander 4.0 allows remote attackers to view arbitrary files via a .. (dot dot) in the file parameter.

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
Ubiquiti Ubiquiti EdgeRouter 4 Unpatched

External references