PoC Index

CVE-2013-2068

HIGH 9.4EPSS 58.6%

Multiple directory traversal vulnerabilities in the AgentController in Red Hat CloudForms Management Engine 2.0 allow remote attackers to create and overwrite arbitrary files via a .. (dot dot) in the filename parameter to the (1) log, (2) upload, or (3) linuxpkgs method.

CVSS v2.0
9.4 HIGHAV:N/AC:L/Au:N/C:N/I:C/A:C
EPSS
58.62% chance of exploitation in the next 30 days, 99th percentile
Published
2013-09-28
Updated
2024-08-06

Proof-of-concept exploits (1)

Metasploit modules (1)

ExploitDB entries (1)

References

Related