2 results (0.009 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

09 Nov 2020 — CapaSystems CapaInstaller before 6.0.101 does not properly assign, modify, or check privileges for an actor who attempts to edit registry values, allowing an attacker to escalate privileges. CapaSystems CapaInstaller versiones anteriores a 6.0.101 no asigna, modifica o comprueba apropiadamente los privilegios de un actor que intenta editar los valores del registro, permitiendo a un atacante escalar los privilegios • https://capawiki.capasystems.com/display/ci/CapaInstaller+6.0+-+Build+101 •

CVSS: 7.5EPSS: 0%CPEs: 6EXPL: 2

29 Aug 2013 — Directory traversal vulnerability in logreader/uploadreader.jsp in CapaSystems Performance Guard before 6.2.102 allows remote attackers to read arbitrary files via unspecified vectors. Vulnerabilidad de salto de directorio en logreader/uploadreader.jsp en CapaSystems Performance Guard anterior a la versión 6.2.102 permite a atacantes remotos leer archivos a través de vectores no especificados. Performance Guard from CapaSystems suffers from a traversal vulnerability that allows for arbitrary file reading. • https://packetstorm.news/files/id/123013 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •