CVE-2014-100015: Path Traversal
Published Jan 13, 2015
·Updated
Directory traversal vulnerability in pdmwService.exe in SolidWorks Workgroup PDM 2014 allows remote attackers to write to arbitrary files via a .. (dot dot) in the filename in a file upload.
Affected Software
1 affected component
SolidWorks Product Data Management=2014
Event History
Jan 13, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-100015?
CVE-2014-100015 is classified as a high severity vulnerability due to its potential for arbitrary file writes.
2
How do I fix CVE-2014-100015?
To fix CVE-2014-100015, you should upgrade SolidWorks Workgroup PDM to a version that has addressed this vulnerability.
3
What impact does CVE-2014-100015 have on my system?
CVE-2014-100015 allows remote attackers to write to arbitrary files, potentially compromising system integrity and security.
4
Is CVE-2014-100015 exploitable remotely?
Yes, CVE-2014-100015 can be exploited remotely, allowing attackers to upload malicious files.
5
What software is affected by CVE-2014-100015?
CVE-2014-100015 affects SolidWorks Workgroup PDM 2014 specifically.