Skip to content

CVE-2014-3225

Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0611 (6.1%)
Percentile: 90.8%
EPSS: 2026-05-06

Affects

cobblerd:cobbler

Technical description

Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile.

Published: 5/14/2014, 12:55:11 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam