CVE-2016-15023

Executive Summary

This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Informations
Name
CVE-2016-15023
First vendor Publication
2023-01-31
Vendor
Cve
Last vendor Modification
2023-01-31

Security-Database Scoring CVSS v3


Cvss vector : N/A
Overall CVSS Score
NA

Base Score
NA
Environmental Score
NA
impact SubScore
NA
Temporal Score
NA
Exploitabality Sub Score
NA

 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2


Cvss vector :
Cvss Base Score
N/A
Attack Range
N/A
Cvss Impact Score
N/A
Attack Complexity
N/A
Cvss Expoit Score
N/A
Authentication
N/A
Calculate full CVSS 2.0 Vectors scores

Detail




A vulnerability, which was classified as problematic, was found in SiteFusion Application Server up to 6.6.6. This affects an unknown part of the file getextension.php of the component Extension Handler. The manipulation leads to path traversal. Upgrading to version 6.6.7 is able to address this issue. The name of the patch is 49fff155c303d6cd06ce8f97bba56c9084bf08ac. It is recommended to upgrade the affected component. The identifier VDB-219765 was assigned to this vulnerability.




Original Source


Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-15023

CWE : Common Weakness Enumeration


%
Id
Name
100 %
15023