Directory Traversal Vulnerability in Novell File Reporter by Novell
CVE-2012-4959
Currently unrated
Summary
A directory traversal vulnerability has been identified in NFRAgent.exe within Novell File Reporter version 1.0.2. This flaw allows remote attackers to exploit the application and upload files by crafting a specific FSF/CMD request that incorporates a '..' (dot dot) in the FILE element of an FSFUI record. Successful exploitation could lead to unauthorized file execution on the affected system, posing significant security risks.
References
EPSS Score
67% chance of being exploited in the next 30 days.
Timeline
Vulnerability Reserved
Vulnerability published