Path Traversal Vulnerability in Novell File Reporter by Novell
CVE-2012-4957
Currently unrated
What is CVE-2012-4957?
The vulnerability in Novell File Reporter version 1.0.2 is due to an absolute path traversal flaw found in NFRAgent.exe. This issue enables remote attackers to exploit the vulnerability by sending a specially crafted request that includes a full pathname within a PATH element of an SRS record. Successful exploitation allows the attacker to gain unauthorized access to read arbitrary files from the server, potentially leading to exposure of sensitive information.