CVE-2015-2856

Publication date

2017-10-10 13:00:00

Family

certcc

State

PUBLISHED

Description

Directory traversal vulnerability in the template function in function.inc in Accellion File Transfer Appliance devices before FTA_9_11_210 allows remote attackers to read arbitrary files via a .. (dot dot) in the statecode cookie.