AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-7820

HIGH · CVSS 7.1 EPSS 1.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-11-12 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.1. It may be remotely exploitable.

CVE
CVE-2015-7820
Severity
HIGH
CVSS
7.1
EPSS
1.41%

Original NVD Description

Race condition in the administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows remote attackers to obtain privileged-account access, and consequently provide ZipDownload.jsp input containing directory traversal sequences to read arbitrary files, via a request to port 40080 or 40443.