Directory traversal vulnerability in private/file_management.php on the IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, allows remote authenticated users to list arbitrary directories and possibly have unspecified other impact via a .. (dot dot) in the DIR parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-07-07T18:00:00
Updated: 2024-08-07T02:39:37.809Z
Reserved: 2010-07-07T00:00:00
Link: CVE-2010-2655
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-07-08T12:54:47.177
Modified: 2024-11-21T01:17:06.350
Link: CVE-2010-2655
Redhat
No data.