Security Advisory

CVE-2011-1654

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-04-15 19:00:00
Last updated 2024-08-06 22:37:25
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in the Heartbeat Web Service in CA.Itm.Server.ManagementWS.dll in the Management Server in CA Total Defense (TD) r12 before SE2 allows remote attackers to execute arbitrary code via directory traversal sequences in the GUID parameter in an upload request to FileUploadHandler.ashx.