CyberSec.Space Logo
Back to CVE Browser

CVE-2013-1080

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1840%
EPSS Percentile2.34th
PublishedMar 29, 2013
Last ModifiedApr 29, 2026

Vulnerability Description

The web server in Novell ZENworks Configuration Management (ZCM) 10.3 and 11.2 before 11.2.4 does not properly perform authentication for zenworks/jsp/index.jsp, which allows remote attackers to conduct directory traversal attacks, and consequently upload and execute arbitrary programs, via a request to TCP port 443.

Affected Platforms (CPE)

πŸ“¦
Novell

Zenworks Configuration Management

= 10.3
πŸ“¦
Novell

Zenworks Configuration Management

= 11.2

References & Advisories

Related Vulnerabilities