vendor:
JiveForums
by:
Zhaohuan
7,5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: JiveForums
Affected Version From: JiveForums 5.5.25/5.5.20/5.5.7/3.2.10/2.6.2
Affected Version To: <= 5.5.25
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2020
JiveForums <=5.5.25 Directory Traversal Vulnerability
Jive forums is a widely recognized network community. Its products have been used by global IT giants including IBM, HP, Oracle, Adobe, Cisco, Intel, Amazon, Emc, Mcafee, Rapid7, Fireeye, etc. The version of JiveForums <=5.5.25 and < 4.0 are vulnerable to a directory traversal security issue, other versions may also be affected.
Mitigation:
Update to jiveforums 5.5.30 or the latest version.