NTT Data TERASOLUNA Server Framework for Java(WEB) 2.0.0.1 up to and including 2.0.6.1, as used in Fujitsu Interstage Business Application Server and other products, allows remote malicious users to bypass a file-extension protection mechanism, and consequently read arbitrary files, via a crafted pathname.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nttdata terasoluna server framework for java web 2.0.6.1 |
||
nttdata terasoluna server framework for java web 2.0.5.3 |
||
nttdata terasoluna server framework for java web 2.0.5.2 |
||
nttdata terasoluna server framework for java web 2.0.5.1 |
||
nttdata terasoluna server framework for java web 2.0.2.0 |
||
nttdata terasoluna server framework for java web 2.0.0.2 |
||
nttdata terasoluna server framework for java web 2.0.1.0 |
||
nttdata terasoluna server framework for java web 2.0.0.1 |