SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  dotCMS Arbitrary File Upload

Category: WEB-ATTACKS      

A pre-auth remote code execution vulnerability was found in DotCMS which was achievable by performing a directory traversal attack during file upload. This vulnerability ultimately allows attacker to execute arbitrary commands on the underlying system.

References
http://www.securityfocus.com/bid/36550


Relevant Information