CVE Database
/

CVE-2017-5168

Back to search

CVE-2017-5168

Published: Feb 13, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

An issue was discovered in Hanwha Techwin Smart Security Manager Versions 1.5 and prior. Multiple Path Traversal vulnerabilities have been identified. The flaws exist within the ActiveMQ Broker service that is installed as part of the product. By issuing specific HTTP requests, if a user visits a malicious page, an attacker can gain access to arbitrary files on the server. Smart Security Manager Versions 1.4 and prior to 1.31 are affected by these vulnerabilities. These vulnerabilities can allow for remote code execution.

VendorProductVersions

n/a

Hanwha Techwin Smart Security Manager Versions 1.5 and prior

affected
Hanwha Techwin Smart Security Manager Versions 1.5 and prior

References

96147
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now