First published: Mon Aug 28 2017(Updated: )
Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 and earlier, 5.1.0.1 and earlier, 5.1.1.2 and earlier, 5.2.0.3 and earlier, and 5.3.0.1 and earlier.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Hybris | >=5.0.0<=5.0.0.3 | |
SAP Hybris | >=5.0.3<=5.0.3.3 | |
SAP Hybris | >=5.0.4<=5.0.4.4 | |
SAP Hybris | >=5.1.0<=5.1.0.1 | |
SAP Hybris | >=5.1.1<=5.1.1.2 | |
SAP Hybris | >=5.2.0<=5.2.0.3 | |
SAP Hybris | >=5.3.0<=5.3.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8871 is classified as a medium severity vulnerability due to its potential for unauthorized file access.
To fix CVE-2014-8871, upgrade the hybris Commerce software to version 5.0.4.5 or higher.
CVE-2014-8871 affects SAP hybris Commerce software versions 5.0.0.3 and earlier, up to 5.3.0.1 and earlier.
CVE-2014-8871 is a directory traversal vulnerability that allows attackers to access restricted files.
Yes, CVE-2014-8871 can potentially be exploited remotely without authentication, making it a significant risk.