vendor:
Sentinel License Manager
by:
Gjoko 'LiquidWorm' Krstic
7,5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: Sentinel License Manager
Affected Version From: 18.0.1.55505
Affected Version To: 18.0.1.55505
Patch Exists: NO
Related CWE: N/A
CPE: a:gemalto:sentinel_license_manager:18.0.1.55505
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Microsoft Windows 7 Ultimate SP1 (EN) | HASP LM/18.00 (web server)
2016
Gemalto Sentinel License Manager 18.0.1 Directory Traversal Vulnerability
Input passed via the 'alpremove' and 'check_in_file' parameters is not properly verified in '/_int_/action.html' and '/_int_/checkin_file.html' before being used to delete and create files. This can be exploited to arbitrarily delete sensitive information on a system and/or write files via directory traversal attacks.
Mitigation:
Input validation should be performed to ensure that untrusted data is not used to delete or create files.