A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to delete arbitrary files or directories under a user controlled path and does not correctly check if the relative path is still within the intended target directory.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: siemens

Published: 2021-10-12T09:49:26

Updated: 2021-10-12T09:49:26

Reserved: 2021-05-28T00:00:00


Link: CVE-2021-33725

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-10-12T10:15:11.863

Modified: 2021-10-18T14:15:04.567


Link: CVE-2021-33725

JSON object: View

cve-icon Redhat Information

No data.

CWE