CVE-2015-0938

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
17/04/2015
Last modified:
12/04/2025

Description

search.php on the Blue Coat Malware Analysis appliance with software before 4.2.4.20150312-RELEASE allows remote attackers to bypass intended access restrictions, and list or read arbitrary documents, by providing matching keywords in conjunction with a crafted parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:blue_coat:malware_analysis_appliance:*:*:*:*:*:*:*:* 4.2.3.20150129 (including)