CVE-2015-0783: Infoleak
Published Aug 9, 2017
·Updated
The FileViewer class in Novell ZENworks Configuration Management (ZCM) allows remote authenticated users to read arbitrary files via the filename variable.
Affected Software
1 affected component
Novell ZENworks Configuration Management
Event History
Aug 9, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0783?
CVE-2015-0783 has a medium severity rating due to its potential to allow unauthorized file access.
2
How does CVE-2015-0783 affect Novell ZENworks Configuration Management?
CVE-2015-0783 allows remote authenticated users to read arbitrary files within the system.
3
How can I mitigate CVE-2015-0783?
To mitigate CVE-2015-0783, restrict user permissions and update to a patched version of Novell ZENworks Configuration Management.
4
Is CVE-2015-0783 being actively exploited?
There have been no widely reported active exploits of CVE-2015-0783 as of now.
5
What should I do if my system is affected by CVE-2015-0783?
If your system is affected by CVE-2015-0783, apply the latest security patches provided by Novell.