#VU87586 Path traversal in FileCatalyst Workflow - CVE-2024-25153
Published: March 18, 2024
FileCatalyst Workflow
Fortra
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to input validation error when processing directory traversal sequences. A remote attacker can send a specially crafted HTTP POST request and upload a specially crafted JSP file to the server into an arbitrary location.
Successful exploitation may allow a remote attacker to compromise the affected system.