Back to search
CVE-2015-5149
Published: Jun 30, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Directory traversal vulnerability in Zoho ManageEngine SupportCenter Plus 7.90 allows remote authenticated users to write to arbitrary files via a .. (dot dot) in the component parameter in the Request component to workorder/Attachment.jsp.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
37322
exploit
x_refsource_EXPLOIT-DB
http://www.vulnerability-lab.com/get_content.php?id=1501
x_refsource_MISC
75512
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now