Security Advisory
CVE-2013-7300
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.