Security Advisory

CVE-2011-4640

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-10-08 10:00:00
Last updated 2024-09-17 00:16:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in logs-x.php in SpamTitan WebTitan before 3.60 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the fname parameter in a view action.