CVE-2015-4666

Publication date

2015-08-13 14:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in opm/read_sessionlog.php in Xceedium Xsuite 2.4.4.5 and earlier allows remote attackers to read arbitrary files via a ....// (quadruple dot double slash) in the logFile parameter.