vendor:
Bonita BPM
by:
High-Tech Bridge Security Research Lab
6.1
CVSS
MEDIUM
Path Traversal [CWE-22], Open Redirect [CWE-601]
22, 601
CWE
Product Name: Bonita BPM
Affected Version From: 6.5.2001
Affected Version To: 6.5.2001
Patch Exists: YES
Related CWE: CVE-2015-3897, CVE-2015-3898
CPE: a:bonitasoft:bonita_bpm
Metasploit:
N/A
Other Scripts:
N/A
Tags: unauth,packetstorm,cve,cve2015,bonita,lfi
CVSS Metrics: CVSS:2.0/AV:N/AC:L/Au:N/C:P/I:N/A:N
Nuclei Metadata: {'max-request': 2, 'vendor': 'bonitasoft', 'product': 'bonita_bpm_portal'}
Platforms Tested: Windows and Mac OS packages
2015
Path Traversal and Open Redirect in Bonita BPM Portal
Bonita BPM Portal before 6.5.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the theme parameter and a file path in the location parameter to bonita/portal/themeResource.
Mitigation:
Fixed by Vendor