CVE-2017-13982

A directory traversal vulnerability in HPE BSM Platform Application Performance Management System Health product versions 9.26, 9.30 and 9.40, allows users to upload unrestricted files.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hp:bsm_platform_application_performance_management_system_health:9.26:*:*:*:*:*:*:*
cpe:2.3:a:hp:bsm_platform_application_performance_management_system_health:9.30:*:*:*:*:*:*:*
cpe:2.3:a:hp:bsm_platform_application_performance_management_system_health:9.40:*:*:*:*:*:*:*

History

07 Nov 2023, 02:38

Type Values Removed Values Added
References (MISC) http://www.zerodayinitiative.com/advisories/ZDI-17-719/ - Third Party Advisory, VDB Entry () http://www.zerodayinitiative.com/advisories/ZDI-17-719/ -
References (AUSCERT) https://www.auscert.org.au/bulletins/52154 - Third Party Advisory () https://www.auscert.org.au/bulletins/52154 -
References (BID) http://www.securityfocus.com/bid/101199 - () http://www.securityfocus.com/bid/101199 -
References (CONFIRM) https://softwaresupport.hpe.com/km/KM02942065 - Permissions Required () https://softwaresupport.hpe.com/km/KM02942065 -

Information

Published : 2017-09-30 01:29

Updated : 2023-12-10 12:15


NVD link : CVE-2017-13982

Mitre link : CVE-2017-13982

CVE.ORG link : CVE-2017-13982


JSON object : View

Products Affected

hp

  • bsm_platform_application_performance_management_system_health
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CWE-434

Unrestricted Upload of File with Dangerous Type