Security Advisory

CVE-2015-2856

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-10-10 13:00:00
Last updated 2024-08-06 05:24:38
Assigner certcc
State PUBLISHED

Description

Directory traversal vulnerability in the template function in function.inc in Accellion File Transfer Appliance devices before FTA_9_11_210 allows remote attackers to read arbitrary files via a .. (dot dot) in the statecode cookie.