First published: Tue Jan 13 2015(Updated: )
Directory traversal vulnerability in pdmwService.exe in SolidWorks Workgroup PDM 2014 allows remote attackers to write to arbitrary files via a .. (dot dot) in the filename in a file upload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SolidWorks Product Data Management | =2014 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-100015 is classified as a high severity vulnerability due to its potential for arbitrary file writes.
To fix CVE-2014-100015, you should upgrade SolidWorks Workgroup PDM to a version that has addressed this vulnerability.
CVE-2014-100015 allows remote attackers to write to arbitrary files, potentially compromising system integrity and security.
Yes, CVE-2014-100015 can be exploited remotely, allowing attackers to upload malicious files.
CVE-2014-100015 affects SolidWorks Workgroup PDM 2014 specifically.