IBM Campaign 9.1.2 and 10.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 162172.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2019-06-19T13:30:19.794040Z

Updated: 2024-09-17T01:31:41.663Z

Reserved: 2019-01-03T00:00:00

Link: CVE-2019-4384

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-06-19T14:15:11.083

Modified: 2023-01-30T16:51:15.493

Link: CVE-2019-4384

cve-icon Redhat

No data.