Directory traversal vulnerability in Dell EqualLogic PS4000 with firmware 6.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the default URI.
References
Link | Resource |
---|---|
https://www.xlabs.com.br/blog/?p=50 | Exploit |
http://www.securityfocus.com/bid/70760 | |
http://www.exploit-db.com/exploits/35056 | Exploit |
Configurations
Information
Published : 2014-10-30 07:55
Updated : 2014-10-31 12:04
NVD link : CVE-2013-3304
Mitre link : CVE-2013-3304
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
dell
- equallogic_ps4000_firmware