#VU49364 Path traversal in GigaVUE-OS - CVE-2020-12251
Published: April 29, 2020 / Updated: January 11, 2021
GigaVUE-OS
Gigamon
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists due to insufficient sanitization of user-supplied passed in the upload functionality. A remote authenticated attacker can send a specially crafted HTTP request containing directory traversal sequences and read contents of arbitrary files on the system.