Directory traversal vulnerability in the set_log_config function in regclnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x prior to 2.3.1 HF2 allows remote authenticated users to create or overwrite arbitrary files via directory traversal sequences in a log pathname.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microfocus privileged user manager 2.3.1 |
||
microfocus privileged user manager 2.3.0 |