peter bassill · operator
$ cve CVE-2011-2653 JSON

CVE-2011-2653 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 72.5% (pctl 99)

Patch early

A public exploit exists.

Description

Directory traversal vulnerability in the rtrlet component in Novell ZENworks Asset Management (ZAM) 7.5 allows remote attackers to execute arbitrary code by uploading an executable file.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS72.49% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-22
On CISA KEVno
Public exploityes
Published2011-12-08
Last modified2026-06-16

Affected (1)

VendorProduct
novellzenworks asset management

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD