3.5
CVSSv2

CVE-2018-16968

Published: 26/09/2018 Updated: 23/11/2018
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 3.1 | Impact Score: 1.4 | Exploitability Score: 1.6
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Citrix ShareFile StorageZones Controller prior to 5.4.2 allows Directory Traversal.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

citrix sharefile storagezones controller

Vendor Advisories

Description of Problem Two security issues have been identified within Citrix ShareFile StorageZones Controller that, if exploited, could allow a compromised or malicious ShareFile user to write arbitrary files as that Active Directory user to the local file system, and also to discover the full local file system paths of shared files to which the ...

Exploits

Citrix StorageZones Controller versions prior to 542 suffer from padding oracle, improper access restriction, and path traversal vulnerabilities ...