Directory traversal vulnerability in admin/folders/saveuploadfiles.asp in Hosting Controller 2002 RC 1 allows remote authenticated users to overwrite arbitrary files via an absolute path in the OpenPath parameter.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/25675http://www.securityfocus.com/archive/1/429731/100/0/threadedhttp://www.osvdb.org/24772