CVE Database
/

CVE-2017-5182

Back to search

CVE-2017-5182

Published: Jan 23, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

Remote Manager in Open Enterprise Server (OES) allows unauthenticated remote attackers to read any arbitrary file, via a specially crafted URL, that allows complete directory traversal and total information disclosure. This vulnerability is present on all versions of OES for linux, it applies to OES2015 SP1 before Maintenance Update 11080, OES2015 before Maintenance Update 11079, OES11 SP3 before Maintenance Update 11078, OES11 SP2 before Maintenance Update 11077).

VendorProductVersions

Micro Focus International

Open Enterprise Server

affected
All

References

1037689
vdb-entry
x_refsource_SECTRACK
95743
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now