Upstream information
Description
Directory traversal vulnerability in the email-template feature in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows remote attackers to bypass intended access restrictions and write to arbitrary files via a .. (dot dot) in a blob name.SUSE information
Overall state of this security issue: Does not affect SUSE products
No SUSE Bugzilla entries cross referenced.
SUSE Security Advisories:
- TID7017788, published Sa 3. Mär 12:03:04 CET 2018
SUSE Timeline for this CVE
CVE page created: Tue Jun 28 17:46:52 2016CVE page last modified: Wed Mar 26 11:32:07 2025