Security Advisory

CVE-2015-3203

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2015-09-28 16:00:00
Last updated 2024-08-06 05:39:32
Assigner redhat
State PUBLISHED

Description

Unrestricted file upload vulnerability in h5ai before 0.25.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the directory specified by the href parameter.