First published: Wed Jan 09 2019(Updated: )
Directory traversal vulnerability in Cybozu Remote Service 3.0.0 to 3.1.8 for Windows allows remote authenticated attackers to read arbitrary files via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Cybozu Remote Service Manager | >=3.0.0<=3.1.8 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-16170 is high, with a severity value of 8.1.
Cybozu Remote Service 3.0.0 to 3.1.8 for Windows is affected by CVE-2018-16170.
The vulnerability in CVE-2018-16170 allows remote authenticated attackers to read arbitrary files through directory traversal.
To fix CVE-2018-16170, it is recommended to update Cybozu Remote Service to a version beyond 3.1.8.
More information about CVE-2018-16170 can be found at the following resources: - [JVN](https://jvn.jp/en/jp/JVN23161885/index.html) - [Cybozu Support Knowledge Base](https://kb.cybozu.support/article/34301/)