Lucene search

K
cvelistMitreCVELIST:CVE-2014-100002
HistoryJan 13, 2015 - 11:00 a.m.

CVE-2014-100002

2015-01-1311:00:00
mitre
www.cve.org
3

AI Score

6.7

Confidence

Low

EPSS

0.627

Percentile

97.9%

Directory traversal vulnerability in ManageEngine SupportCenter Plus 7.9 before 7917 allows remote attackers to read arbitrary files via a …%2f (dot dot encoded slash) in the attach parameter to WorkOrder.do in the file attachment for a new ticket.

AI Score

6.7

Confidence

Low

EPSS

0.627

Percentile

97.9%