CVE Vulnerabilities

CVE-2007-2048

Published: Apr 16, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in /console in the Management Console in webMethods Glue 6.5.1 and earlier allows remote attackers to read arbitrary system files via a .. (dot dot) in the resource parameter.

Affected Software

Name Vendor Start Version End Version
Glue Webmethods 4.0 (including) 4.0 (including)
Glue Webmethods 5.0 (including) 5.0 (including)
Glue Webmethods 6.5.1 (including) 6.5.1 (including)

References