Security Advisory

CVE-2020-7522

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-08-31 16:10:50
Last updated 2024-08-04 09:33:19
Assigner schneider
State PUBLISHED

Description

Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) vulnerability exists in SFAPV9601 - APC Easy UPS On-Line Software (V2.0 and earlier) when accessing a vulnerable method of `SoundUploadServlet` which may lead to uploading executable files to non-specified directories.