Kemp Support, how can we help?

The latest application delivery knowledge and expertise at your fingertips.

CVE-2023-26101 - Path Traversal vulnerability

 

Information

 

Summary: Flowmon Packet Investigator includes a Path Traversal vulnerability
Environment:

Product: Flowmon FPI

Version: 12.0.1

Platform: All

Question/Problem Description:

Path Traversal vulnerability is detected in Flowmon Packet Investigator 12.0.1.

Discoverer Credits: HackerOne - g3n3

Steps to Reproduce:  
Error Message:  
Defect Number: FLMON-3645, CVE-2023-26101
Enhancement Number:  
Cause: All logged users with a credential to Flowmon Packet Investigator can use this vulnerability to download files stored on the appliance file system.
Resolution: Fix is available in Flowmon Packet Investigator 12.1
Workaround:  
Notes:  

Was this article helpful?
0 out of 0 found this helpful

Comments