Directory Traversal Vulnerability in Novell File Reporter by Novell
CVE-2012-4958

Currently unrated

Key Information:

Vendor
Novell
Vendor
CVE Published:
18 November 2012

Summary

A directory traversal vulnerability exists in NFRAgent.exe within Novell File Reporter 1.0.2. This security flaw enables remote attackers to access arbitrary files by crafting a specific request containing dot-segments in the FILE element of an FSFUI record. This allows unauthorized file exposure, potentially leading to sensitive data disclosure.

References

EPSS Score

81% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.