CVE-2011-2653

Novell Zenworks Asset Management - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in the rtrlet component in Novell ZENworks Asset Management (ZAM) 7.5 allows remote attackers to execute arbitrary code by uploading an executable file.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotejava
https://www.exploit-db.com/exploits/20502
metasploit WORKING POC EXCELLENT
by Unknown, juan vazquez · rubypocjava
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/zenworks_assetmgmt_uploadservlet.rb

Scores

EPSS 0.8469
EPSS Percentile 99.3%

Details

CWE
CWE-22
Status published
Products (1)
novell/zenworks_asset_management 7.5
Published Dec 08, 2011
Tracked Since Feb 18, 2026