CVE-2016-8206
high · 7.5A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to write to arbitrary files, and consequently delete the files.
7.5
CVSS
14.5%
EPSS (exploit prob.)
96th
EPSS percentile
2017-01-14
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weaknesses
CWE-22
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| brocade | network_advisor | <= 14.0.2 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/95692
- http://www.zerodayinitiative.com/advisories/ZDI-17-051
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03785en_us
- https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2017-179
- http://www.securityfocus.com/bid/95692
- http://www.zerodayinitiative.com/advisories/ZDI-17-051
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03785en_us
- https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2017-179
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2016-8206