Upstream information

CVE-2016-1610 at MITRE

Description

Directory traversal vulnerability in the email-template feature in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows remote attackers to bypass intended access restrictions and write to arbitrary files via a .. (dot dot) in a blob name.

SUSE information

Overall state of this security issue: Does not affect SUSE products

No SUSE Bugzilla entries cross referenced.

SUSE Security Advisories:

  • TID7017788, published Sa 3. Mär 12:03:04 CET 2018


SUSE Timeline for this CVE

CVE page created: Tue Jun 28 17:46:52 2016
CVE page last modified: Wed Mar 26 11:32:07 2025