Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4wjq-69rc-8wcp

Опубликовано: 02 мая 2019
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Path Traversal in Apache Camel

Apache Camel's File is vulnerable to directory traversal. Camel 2.21.0 to 2.21.3, 2.22.0 to 2.22.2, 2.23.0 and the unsupported Camel 2.x (2.19 and earlier) versions may be also affected.

Пакеты

Наименование

org.apache.camel:camel-core

maven
Затронутые версииВерсия исправления

>= 2.21.0, <= 2.21.3

2.21.5

Наименование

org.apache.camel:camel-core

maven
Затронутые версииВерсия исправления

>= 2.22.0, < 2.22.3

2.22.3

Наименование

org.apache.camel:camel-core

maven
Затронутые версииВерсия исправления

= 2.23.0

2.23.1

EPSS

Процентиль: 95%
0.08482
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.2
redhat
больше 7 лет назад

Apache Camel's File is vulnerable to directory traversal. Camel 2.21.0 to 2.21.3, 2.22.0 to 2.22.2, 2.23.0 and the unsupported Camel 2.x (2.19 and earlier) versions may be also affected.

CVSS3: 7.5
nvd
больше 7 лет назад

Apache Camel's File is vulnerable to directory traversal. Camel 2.21.0 to 2.21.3, 2.22.0 to 2.22.2, 2.23.0 and the unsupported Camel 2.x (2.19 and earlier) versions may be also affected.

EPSS

Процентиль: 95%
0.08482
Низкий

7.5 High

CVSS3

Дефекты

CWE-22