CVE-2010-0620

Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 allows remote attackers to overwrite arbitrary files with any content, and consequently execute arbitrary code, via a .. (dot dot) in an unspecified parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:homebase_server:6.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:homebase_server:6.3:*:*:*:*:*:*:*

History

21 Nov 2024, 01:12

Type Values Removed Values Added
References () http://securityreason.com/securityalert/8230 - () http://securityreason.com/securityalert/8230 -
References () http://www.securityfocus.com/archive/1/509723/100/0/threaded - () http://www.securityfocus.com/archive/1/509723/100/0/threaded -
References () http://www.securityfocus.com/bid/38380 - Exploit () http://www.securityfocus.com/bid/38380 - Exploit
References () http://www.vupen.com/english/advisories/2010/0458 - Vendor Advisory () http://www.vupen.com/english/advisories/2010/0458 - Vendor Advisory
References () http://www.zerodayinitiative.com/advisories/ZDI-10-020/ - () http://www.zerodayinitiative.com/advisories/ZDI-10-020/ -

Information

Published : 2010-02-25 00:30

Updated : 2024-11-21 01:12


NVD link : CVE-2010-0620

Mitre link : CVE-2010-0620

CVE.ORG link : CVE-2010-0620


JSON object : View

Products Affected

emc

  • homebase_server
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')