CVE-2012-2215: Path Traversal
Published Apr 9, 2012
·Updated
Directory traversal vulnerability in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to read arbitrary files via an opcode 0x21 request.
Affected Software
2 affected components
Novell ZENworks Configuration Management=11.1
Novell ZENworks Configuration Management=11.1a
Remediation
Patch Available
Event History
Apr 9, 2012
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2215?
CVE-2012-2215 is considered a high severity vulnerability due to its potential for unauthorized file access.
2
How do I fix CVE-2012-2215?
To fix CVE-2012-2215, upgrade to a patched version of Novell ZENworks Configuration Management that addresses this vulnerability.
3
What are the potential impacts of CVE-2012-2215?
The potential impacts of CVE-2012-2215 include unauthorized access to sensitive files on the affected system.
4
Which versions of ZENworks Configuration Management are affected by CVE-2012-2215?
CVE-2012-2215 affects Novell ZENworks Configuration Management versions 11.1 and 11.1a.
5
Can CVE-2012-2215 be exploited remotely?
Yes, CVE-2012-2215 can be exploited remotely by attackers to read arbitrary files using specific opcode requests.