Back to search
CVE-2015-7851
Published: Jan 28, 2020
Modified: Aug 6, 2024
PUBLISHED
Description
Directory traversal vulnerability in the save_config function in ntpd in ntp_control.c in NTP before 4.2.8p4, when used on systems that do not use '\' or '/' characters for directory separation such as OpenVMS, allows remote authenticated users to overwrite arbitrary files.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.talosintel.com/reports/TALOS-2015-0062/
x_refsource_MISC
http://support.ntp.org/bin/view/Main/SecurityNotice
x_refsource_MISC
http://support.ntp.org/bin/view/Main/NtpBug2918
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now