Field Assessment
AI analysis pending.
CVE
CVE-2016-5941
Severity
MEDIUM
CVSS
5.7
EPSS
1.59%
Original Filing — NVD Description
IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing dot dot sequences (/../) to view arbitrary files on the system.