Directory traversal vulnerability in processImageSave.jsp in DCNM-SAN Server in Cisco Prime Data Center Network Manager (DCNM) before 6.2(1) allows remote attackers to write arbitrary files via the chartid parameter, aka Bug IDs CSCue77035 and CSCue77036. NOTE: this can be leveraged to execute arbitrary commands by using the JBoss autodeploy functionality.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2013-09-23T10:00:00

Updated: 2024-08-06T17:15:20.355Z

Reserved: 2013-08-22T00:00:00

Link: CVE-2013-5486

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-09-23T10:18:59.157

Modified: 2016-09-16T20:47:12.077

Link: CVE-2013-5486

cve-icon Redhat

No data.