CVE-2003-0839Path Traversal in Microsoft Windows 2003 Server

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
31.3%
top 3.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 17
Latest updateApr 29

Description

Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a "shell:" link.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-q485-f3ch-xvgp: Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files v2022-04-29
CVEList
CVE-2003-0839: Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files v2003-10-09
CVE-2003-0839 — Path Traversal in Microsoft | cvebase