Absolute path traversal vulnerability in Eshtery CMS allows remote attackers to read arbitrary files via a full pathname in the file parameter to FileManager.aspx.
References
Link Resource
http://seclists.org/fulldisclosure/2014/Feb/219 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/65740 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/91463 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-04-13T21:00:00

Updated: 2018-04-13T20:57:01

Reserved: 2014-02-19T00:00:00


Link: CVE-2014-2069

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-04-16T09:58:01.603

Modified: 2018-05-21T17:30:43.487


Link: CVE-2014-2069

JSON object: View

cve-icon Redhat Information

No data.

CWE