CVE-2017-6527: Dnatools Dnalims

High severity, CVSS 7.5. EPSS: 56.6% chance of exploitation in the next 30 days.

An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to a NUL-terminated directory traversal attack allowing an unauthenticated attacker to access system files readable by the web server user (by using the viewAppletFsa.cgi seqID parameter).

Affected products

  • Dnatools Dnalims: version 4-2015s13 only

Published 2017-03-09. Last modified 2026-06-17.