CVE-2014-5302

Directory traversal vulnerability in ServiceDesk Plus and Plus MSP v5 through v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4 allows remote authenticated users to execute arbitrary code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:manageengine:servicedesk_plus:-:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:manageengine:assetexplorer:-:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:a:manageengine:supportcenter:-:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:a:manageengine:it360:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-08-28 15:29

Updated : 2024-02-04 19:29


NVD link : CVE-2014-5302

Mitre link : CVE-2014-5302

CVE.ORG link : CVE-2014-5302


JSON object : View

Products Affected

manageengine

  • assetexplorer
  • it360
  • supportcenter
  • servicedesk_plus
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')