CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.1. It may be remotely exploitable.
CVE
CVE-2015-7820
Severity
HIGH
CVSS
7.1
EPSS
1.41%
Original NVD Description
Race condition in the administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows remote attackers to obtain privileged-account access, and consequently provide ZipDownload.jsp input containing directory traversal sequences to read arbitrary files, via a request to port 40080 or 40443.