4.3
CVSSv2

CVE-2016-1183

Published: 19/06/2016 Updated: 23/06/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 3.7 | Impact Score: 1.4 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

NTT Data TERASOLUNA Server Framework for Java(WEB) 2.0.0.1 up to and including 2.0.6.1, as used in Fujitsu Interstage Business Application Server and other products, allows remote malicious users to bypass a file-extension protection mechanism, and consequently read arbitrary files, via a crafted pathname.

Vulnerable Product Search on Vulmon Subscribe to Product

nttdata terasoluna server framework for java web 2.0.6.1

nttdata terasoluna server framework for java web 2.0.5.3

nttdata terasoluna server framework for java web 2.0.5.2

nttdata terasoluna server framework for java web 2.0.5.1

nttdata terasoluna server framework for java web 2.0.2.0

nttdata terasoluna server framework for java web 2.0.0.2

nttdata terasoluna server framework for java web 2.0.1.0

nttdata terasoluna server framework for java web 2.0.0.1