Security Advisory

CVE-2016-5803

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-02-13 21:00:00
Last updated 2024-08-06 01:15:10
Assigner icscert
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in CA Unified Infrastructure Management Version 8.47 and earlier. The Unified Infrastructure Management software uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences such as ".." that can resolve to a location that is outside of that directory.