CVE-2017-15220

Publication date

2017-10-11 13:00:00

Family

mitre

State

PUBLISHED

Description

Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to execute arbitrary code.