Security Advisory

CVE-2016-5049

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-08-26 19:00:00
Last updated 2024-08-06 00:46:40
Assigner certcc
State PUBLISHED

Description

Directory traversal vulnerability in chat/openattach.aspx in ReadyDesk 9.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the SESID parameter in conjunction with a filename in the FNAME parameter.