Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-0867

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2015-0867
Last Modified 23 Jan 2015 03:37:34
Published 21 Jan 2015 10:17:15
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2015-0867

Summary

Directory traversal vulnerability in SYNCK GRAPHICA Download Log CGI 3.0 and earlier allows remote attackers to read arbitrary files via a crafted filename.

Vulnerable Systems

Application

  • Synck Graphica Download Log Cgi 3.0


References

CONFIRM - http://www.synck.com/blogs/news/weblog_1420694040.html

JVNDB - JVNDB-2015-000006

JVN - JVN#88559134


Last Updated: 27 May 2016 11:07:36