CVE-2015-4068

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
29/05/2015
Last modified:
22/10/2025

Description

Directory traversal vulnerability in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive information or cause a denial of service via a crafted file path to the (1) reportFileServlet or (2) exportServlet servlet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:arcserve:udp:*:*:*:*:*:*:*:* 5.0 (excluding)
cpe:2.3:a:arcserve:udp:5.0:-:*:*:*:*:*:*