Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-1047

Опубликовано: 24 янв. 2018
Источник: debian

Описание

A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource method could lead to information disclosure of arbitrary local files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wildflyitppackage

Примечания

  • https://issues.jboss.org/browse/WFLY-9620

  • https://developer.jboss.org/thread/276826

  • Fixed by https://github.com/wildfly/wildfly/pull/10748

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 8 лет назад

A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource method could lead to information disclosure of arbitrary local files.

CVSS3: 8.6
redhat
около 8 лет назад

A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource method could lead to information disclosure of arbitrary local files.

CVSS3: 5.5
nvd
около 8 лет назад

A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource method could lead to information disclosure of arbitrary local files.

CVSS3: 5.5
github
больше 7 лет назад

Improper Input Validation in org.wildfly:wildfly-undertow