PT-2013-4527 · Attachmate · Attachmate Verastream Host Integrator

Arnold Geels

·

Published

2013-11-06

·

Updated

2013-11-07

·

CVE-2013-3626

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Attachmate Verastream Host Integrator versions 6.0 through 7.5 SP 1 HF 1
Description A directory traversal issue in the Session Server allows remote attackers to upload and execute arbitrary files by sending a crafted message.
Recommendations For versions 6.0 through 7.5 SP 1 HF 1, update to a version that contains a fix for this issue to prevent remote attackers from uploading and executing arbitrary files.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-3626

Affected Products

Attachmate Verastream Host Integrator