Directory Traversal Vulnerability in Progress Software OpenEdge 11.2
CVE-2014-8555

Currently unrated

Key Information:

Vendor
Progress
Status
Vendor
CVE Published:
12 November 2014

Summary

The directory traversal vulnerability in Progress Software OpenEdge 11.2 allows remote attackers to exploit the 'selection' parameter in report/reportViewAction.jsp. By inserting a '..' (dot dot) in the selection parameter, attackers can gain unauthorized access to sensitive files on the server, which may lead to data exposure and compromise of system integrity.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.