First published: Fri Jul 14 2017(Updated: )
Directory traversal vulnerability in AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to read arbitrary files via "File Transfer Web Service".
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
hammock AssetView | =9.2 | |
Apple iOS and macOS | <=- |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-2240 is classified as a high severity vulnerability due to its potential to expose sensitive files.
To fix CVE-2017-2240, users should upgrade to AssetView for MacOS version 9.2.1 or later.
CVE-2017-2240 affects AssetView for MacOS version 9.2.0 and earlier.
CVE-2017-2240 is a directory traversal vulnerability that allows remote attackers to read arbitrary files.
Yes, CVE-2017-2240 can be exploited remotely through the File Transfer Web Service.