AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-6036

MEDIUM · CVSS 6.4 EPSS 39.12%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-12-04 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2014-6036
Severity
MEDIUM
CVSS
6.4
EPSS
39.12%

Original NVD Description

Directory traversal vulnerability in the multipartRequest servlet in ZOHO ManageEngine OpManager 11.3 and earlier, Social IT Plus 11.0, and IT360 10.3, 10.4, and earlier allows remote attackers or remote authenticated users to delete arbitrary files via a .. (dot dot) in the fileName parameter.