7.5
CVSSv2

CVE-2012-1047

Published: 12/02/2012 Updated: 25/02/2012
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in the WWWHELP Service (js/html/wwhelp.htm) in Cyberoam Central Console (CCC) 2.00.2 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the file parameter in an Online_help action.

Vulnerable Product Search on Vulmon Subscribe to Product

cyberoam cyberoam central console 2.00.2

Exploits

Title: ====== Cyberoam Central Console v2002 - File Include Vulnerability Date: ===== 2012-02-08 References: =========== wwwvulnerability-labcom/get_contentphp?id=405 VL-ID: ===== 405 Introduction: ============= Cyberoam Central Console (CCC) appliances offer the flexibility of hardware CCC appliances and virtual CCC appliances ...