Security Advisory

CVE-2008-2403

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-06-04 20:00:00
Last updated 2024-08-07 08:58:02
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multiple directory traversal vulnerabilities in unspecified ASP applications in Sun Java Active Server Pages (ASP) Server before 4.0.3 allow remote attackers to read or delete arbitrary files via a .. (dot dot) in the Path parameter to the MapPath method.