fbkcs/CVE-2021-35975

fbkcs/CVE-2021-35975

GitHubGitHub
Unavailable
This project is no longer available (or publicly accessible) from GitHub
Releases0
Path Traversal Vulnerability in Systematica SMTP Adapter and other sub-products

CVE History

CVEPublishedCVSS v3CVSS v2
5.3 MEDIUM

Absolute path traversal vulnerability in the Systematica SMTP Adapter component (up to v2.0.1.101) in Systematica Radius (up to v.3.9.256.777) allows remote attackers to read arbitrary files via a full pathname in GET parameter "file" in URL. Also: affected components in same product - HTTP Adapter (up to v.1.8.0.15), MSSQL MessageBus Proxy (up to v.1.1.06), Financial Calculator (up to v.1.3.05), FIX Adapter (up to v.2.4.0.25)