CVE-2014-9373: ManageEngine Netflow Analyzer

High severity, CVSS 10.0. EPSS: 6.3% chance of exploitation in the next 30 days.

Directory traversal vulnerability in the CollectorConfInfoServlet servlet in ManageEngine NetFlow Analyzer allows remote attackers to execute arbitrary code via a .. (dot dot) in the filename.

Affected products

  • ManageEngine Netflow Analyzer: affected versions not specified

Published 2014-12-16. Last modified 2026-06-17.