Security Advisory
CVE-2015-4461
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Absolute path traversal vulnerability in eFront CMS 3.6.15.4 and earlier allows remote Professor users to obtain sensitive information via a full pathname in the other parameter.