CVE-2015-4666
NUCLEIXceedium Xsuite - Path Traversal
Title source: ruleDescription
Directory traversal vulnerability in opm/read_sessionlog.php in Xceedium Xsuite 2.4.4.5 and earlier allows remote attackers to read arbitrary files via a ....// (quadruple dot double slash) in the logFile parameter.
Exploits (1)
Nuclei Templates (1)
Xceedium Xsuite <=2.4.4.5 - Local File Inclusion
MEDIUMby 0x_Akoko
References (4)
Scores
EPSS
0.1639
EPSS Percentile
94.9%
Details
CWE
CWE-22
Status
published
Products (2)
xceedium/xsuite
2.3.0
xceedium/xsuite
2.4.3.0
Published
Aug 13, 2015
Tracked Since
Feb 18, 2026