CVE-2014-9375: Path Traversal
Directory traversal vulnerability in the LibraryFileUploadServlet servlet in Lexmark Markvision Enterprise allows remote authenticated users to write to and execute arbitrary files via a .. (dot dot) in a file path in a ZIP archive.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9375?
CVE-2014-9375 is classified as a medium severity vulnerability due to its potential for unauthorized file access and execution.
How do I fix CVE-2014-9375?
To mitigate CVE-2014-9375, update Lexmark Markvision Enterprise to the latest version that includes security patches addressing this vulnerability.
Who is affected by CVE-2014-9375?
CVE-2014-9375 affects authenticated users of Lexmark Markvision Enterprise who can exploit the directory traversal vulnerability.
What type of vulnerability is CVE-2014-9375?
CVE-2014-9375 is a directory traversal vulnerability that allows remote authenticated users to manipulate file paths in ZIP archives.
What could an attacker do with CVE-2014-9375?
An attacker could exploit CVE-2014-9375 to write and execute arbitrary files on the server, potentially compromising the system.