CVE-2012-2293

Directory traversal vulnerability in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allows remote authenticated users to upload files, and consequently execute arbitrary code, via a relative path.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:rsa_archer_smartsuite:4.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:rsa_archer_smartsuite:4.5:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:emc:rsa_archer_egrc:5.0:*:*:*:*:*:*:*
cpe:2.3:a:emc:rsa_archer_egrc:5.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:rsa_archer_egrc:5.2:*:*:*:*:*:*:*

Information

Published : 2013-02-06 04:05

Updated : 2013-02-06 21:00


NVD link : CVE-2012-2293

Mitre link : CVE-2012-2293


JSON object : View

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Advertisement

dedicated server usa

Products Affected

emc

  • rsa_archer_egrc
  • rsa_archer_smartsuite