The ConfigSaveServlet servlet in ManageEngine OpUtils before build 71024 allows remote attackers to "disclose" files via a crafted filename, related to "saveFile."
                
            References
                    | Link | Resource | 
|---|---|
| http://www.zerodayinitiative.com/advisories/ZDI-14-386/ | 
Configurations
                    Information
                Published : 2014-11-25 07:59
Updated : 2015-02-17 07:22
NVD link : CVE-2014-8678
Mitre link : CVE-2014-8678
JSON object : View
CWE
                
                    
                        
                        CWE-200
                        
            Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
                manageengine
- oputils


