Computer Security
[EN] securityvulns.ru
no-pyccku

  

EMC Documentum eRoom protection bypass
Published:04.11.2011
Source:
SecurityVulns ID:12019
Type:local
Threat Level:
5/10
Description:It's possible to bypass file type upload limitations.
CVE:CVE-2011-2739 (The file-blocking feature in EMC Documentum eRoom 7.3.x and 7.4.x before 7.4.3.g does not properly restrict the uploading and opening of files with dangerous file types, which allows remote authenticated users to execute arbitrary code via an uploaded file.)
Original documentdocumentEMC, ESA-2011-032: EMC Documentum eRoom arbitrary file upload vulnerability. (04.11.2011)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru