Home
MEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
* (custom)
affected
Description
This vulnerability allows authenticated attackers to read an arbitrary file by changing a filepath parameter into an internal system path.
Product status
* (custom)
References
www.zenitel.com/.../A100K12333 Zenitel Security Advisory.pdf (Zenitel Security Advisory)
wiki.zenitel.com/wiki/AlphaCom_13.02_-_Release_Notes (Zenitel Release Notes)