CVE-2010-5323 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in UploadServlet in the Remote Management component in Novell ZENworks Configuration Management (ZCM) 10 before 10.3 allows remote attackers to execute arbitrary code via a crafted WAR pathname in the filename parameter in conjunction with WAR content in the POST data a different vulnerability than CVE-2010-5324.
Reference
http://www.exploit-db.com/exploits/16784/ http://www.zerodayinitiative.com/advisories/ZDI-10-078/ https://bugzilla.novell.com/show_bug.cgi?id=578911 https://www.novell.com/support/kb/doc.php?id=7005573
Share on: