MidnightBSD

Advisories for mindbite

CVE-2015-6914 HIGH

Absolute path traversal vulnerability in SiteFactory CMS 5.5.9 allows remote attackers to read arbitrary files via a full pathname in the file parameter to assets/download.aspx.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-22,

Products Affected

Vendor Product Version
mindbite sitefactory_cms 5.5.9