CVE

Id
93421  
CVE No.
CVE-2016-6601  
Status
Candidate  
Description
Directory traversal vulnerability in the file download functionality in ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows remote attackers to read arbitrary files via a .. (dot dot) in the fileName parameter to servlets/FetchFile.  
Phase
Assigned (20160804)  
Votes
None (candidate not yet proposed)  
Comments