Directory traversal vulnerability in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allows remote authenticated users to upload files, and consequently execute arbitrary code, via a relative path.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2013-02-06 04:05
Updated : 2013-02-06 21:00
NVD link : CVE-2012-2293
Mitre link : CVE-2012-2293
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
emc
- rsa_archer_egrc
- rsa_archer_smartsuite