Path traversal in Cisco Data Center Network Manager - CVE-2018-0464
Published: August 28, 2018 / Updated: August 29, 2018
Cisco Data Center Network Manager
Detailed vulnerability description
The vulnerability allows a remote authenticated attacker to conduct path traversal attack on the target system.
The vulnerability exists due to improper validation of user requests within the management interface. A remote attacker can send malicious requests containing directory traversal character sequences within the management interface and view or create arbitrary files on the targeted system.