CVE-2013-1081 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 68.1% (pctl 99)
Patch early
A public exploit exists.
Description
Directory traversal vulnerability in MDM.php in Novell ZENworks Mobile Management (ZMM) 2.6.1 and 2.7.0 allows remote attackers to include and execute arbitrary local files via the language parameter.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 68.08% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-22 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2013-03-11 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| novell | zenworks mobile management |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Novell ZENworks Mobile Device Managment 2.6.1/2.7.0 - Local File Inclusion (Metasploit) | 2013-06-07 |
References
→ the Explorer · watch your stack · NVD