CVE-2014-100015 Information

Description

Directory traversal vulnerability in pdmwService.exe in SolidWorks Workgroup PDM 2014 allows remote attackers to write to arbitrary files via a .. (dot dot) in the filename in a file upload.

Reference

http://packetstormsecurity.com/files/125361 http://www.exploit-db.com/exploits/31831 http://www.exploit-db.com/exploits/32163 https://exchange.xforce.ibmcloud.com/vulnerabilities/91518

Share on: