CVE-2003-1465: Path Traversal
Published Dec 31, 2003
·Updated
Directory traversal vulnerability in download.php in Phorum 3.4 through 3.4.2 allows remote attackers to read arbitrary files.
Affected Software
3 affected components
Phorum Phorum=3.4
Phorum Phorum=3.4.2
Phorum Phorum=3.4.1
Remediation
Patch Available
Event History
Dec 31, 2003
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityWeaknessAffected Software
Oct 25, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-1465?
CVE-2003-1465 has a moderate severity level as it allows unauthorized access to sensitive files.
2
How do I fix CVE-2003-1465?
To fix CVE-2003-1465, upgrade Phorum to version 3.4.3 or later.
3
What types of files can be accessed due to CVE-2003-1465?
CVE-2003-1465 allows attackers to read arbitrary files on the server, potentially exposing sensitive information.
4
Which versions of Phorum are affected by CVE-2003-1465?
CVE-2003-1465 affects Phorum versions 3.4, 3.4.1, and 3.4.2.
5
Who can exploit CVE-2003-1465?
CVE-2003-1465 can be exploited by remote attackers without authentication.