First published: Sat Dec 20 2014(Updated: )
Directory traversal vulnerability in Cisco Enterprise Content Delivery System (ECDS) allows remote attackers to read arbitrary files via a crafted URL, aka Bug ID CSCuo90148.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Enterprise Content Delivery Network Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8019 has been classified as a medium severity vulnerability.
To fix CVE-2014-8019, apply the recommended patch or update provided by Cisco for the affected version of the Enterprise Content Delivery System.
CVE-2014-8019 affects the Cisco Enterprise Content Delivery System software.
CVE-2014-8019 allows remote attackers to read arbitrary files on the system via a crafted URL.
Yes, CVE-2014-8019 is exploitable by attackers who can craft specific URLs.