← Vulnerability feed

Vulnerability record · CVE-2003-0676 · published 27 August 2003

CVE-2003-0676: Sun iplanet directory server vulnerability

Sun · Iplanet Directory Server

Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via "..%2f" (partially encoded dot dot) sequences.

5.0 CVSS 2.0 Medium EPSS 1.6% · top 24.8%
5.0CVSS 2.0 base score
1.6%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References
16 Jun 2026Last modified by NVD

Description

Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via "..%2f" (partially encoded dot dot) sequences.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2003-0676 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2007-2466Sun java system directory server vulnerabilityUnspecified vulnerability in the LDAP Software Development Kit (SDK) for C, as used in Sun Java System Directory Server 5.2 up to Patch 4 and Sun ONE…EPSS 3.0%7.8CVE-2006-4175Sun java system directory server vulnerabilityThe LDAP server (ns-slapd) in Sun Java System Directory Server 5.2 Patch4 and earlier and ONE Directory Server 5.1 and 5.2 allows remote attackers to…EPSS 3.4%7.5CVE-2005-3269Sun java system directory proxy server memory buffer overflow vulnerabilityStack-based buffer overflow in help.cgi in the HTTP administrative interface for (1) Sun Java System Directory Server 5.2 2003Q4, 2004Q2, and 2005Q1,…EPSS 3.1%7.5CVE-2001-1306Sun iplanet directory server vulnerabilityiPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code vi…EPSS 4.1%7.5CVE-2001-1307Sun iplanet directory server vulnerabilityBuffer overflows in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execut…EPSS 5.3%7.5CVE-2001-1308Sun iplanet directory server vulnerabilityFormat string vulnerabilities in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and po…EPSS 4.6%5.0CVE-2007-3224Sun java system directory server vulnerabilityUnspecified vulnerability in Sun ONE/Java System Directory Server (slapd) 6.0, and 5.x before 5.2 Patch 5, allows remote attackers to determine the e…EPSS 2.2%5.0CVE-2003-1125Sun one directory server vulnerabilityUnknown vulnerability in ns-ldapd for Sun ONE Directory Server 4.16, 5.0, and 5.1 allows LDAP clients to cause a denial of service (service halt).EPSS 1.2%

Source: NIST National Vulnerability Database (record CVE-2003-0676), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.