Directory Traversal Vulnerability in Novell File Reporter by Novell
CVE-2012-4959

Currently unrated

Key Information:

Vendor
Novell
Vendor
CVE Published:
18 November 2012

Summary

A directory traversal vulnerability has been identified in NFRAgent.exe within Novell File Reporter version 1.0.2. This flaw allows remote attackers to exploit the application and upload files by crafting a specific FSF/CMD request that incorporates a '..' (dot dot) in the FILE element of an FSFUI record. Successful exploitation could lead to unauthorized file execution on the affected system, posing significant security risks.

References

EPSS Score

67% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.