Directory traversal vulnerability in Avigilon Control Center (ACC) 4 before 4.12.0.54 and 5 before 5.4.2.22 allows remote attackers to read arbitrary files via a crafted help/ URL.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/555984 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/75115 |
Configurations
History
No history.
Information
Published : 2015-06-23 16:59
Updated : 2016-12-03 03:07
NVD link : CVE-2015-2860
Mitre link : CVE-2015-2860
CVE.ORG link : CVE-2015-2860
JSON object : View
Products Affected
avigilon
- avigilon_control_center
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')