CVE-2014-5301: Path Traversal
Published Aug 28, 2017
·Updated
Directory traversal vulnerability in ServiceDesk Plus MSP v5 to v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4.
Affected Software
4 affected components
ManageEngine ServiceDesk Plus
ManageEngine Assetexplorer
ManageEngine Supportcenter
ManageEngine IT360
Event History
Aug 28, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-5301?
CVE-2014-5301 has a high severity rating due to its potential for directory traversal attacks.
2
How do I fix CVE-2014-5301?
To fix CVE-2014-5301, update affected ManageEngine products to their latest available versions.
3
What areas are impacted by CVE-2014-5301?
CVE-2014-5301 impacts ServiceDesk Plus, AssetExplorer, SupportCenter, and IT360 from ManageEngine.
4
Can CVE-2014-5301 lead to remote code execution?
Yes, CVE-2014-5301 can potentially allow an attacker to execute arbitrary code on the server.
5
Who is affected by CVE-2014-5301?
Organizations using vulnerable versions of ManageEngine products are affected by CVE-2014-5301.