PT-2015-5943 · Avigilon · Avigilon Control Center
Jürgen Bilberger
·
Published
2015-06-23
·
Updated
2016-12-03
·
CVE-2015-2860
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Avigilon Control Center (ACC) versions 4.0.0 through 4.12.0.53
Avigilon Control Center (ACC) versions 5.0.0 through 5.4.2.21
Description
A directory traversal issue allows remote attackers to read arbitrary files by crafting a help/ URL.
Recommendations
For Avigilon Control Center (ACC) versions 4.0.0 through 4.12.0.53, update to version 4.12.0.54 or later.
For Avigilon Control Center (ACC) versions 5.0.0 through 5.4.2.21, update to version 5.4.2.22 or later.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Avigilon Control Center