Hosting Controller is an application which centralizes all hosting tasks to one interface. Hosting Controller gives every user the required control they need to manage the appropriate web site relevant to them. Hosting Controller runs on Microsoft Windows systems. An issue has been discovered in Hosting Controller which could allow for the unauthorized modification of directory contents. Hosting Controller fails to validate user privileges when a request is submitted for a restricted web page. A request composed of '../' sequences along with either 'folderactions.asp' or 'file_editor.asp', will allow a user to modify, delete or create files and directories outside of the web root.
Hosting Controller is an application which centralizes all hosting tasks to one interface. Hosting Controller gives every user the required control they need to manage the appropriate web site relevant to them. Hosting Controller runs on Microsoft Windows systems. An issue has been discovered in Hosting Controller which could allow for the unauthorized modification of directory contents. Hosting Controller fails to validate user privileges when a request is submitted for a restricted web page. A request composed of '../' sequences along with either 'folderactions.asp' or 'file_editor.asp', will allow a user to modify, delete or create files and directories outside of the web root.