Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-2712

Опубликовано: 27 янв. 2023
Источник: ubuntu
Приоритет: medium
CVSS3: 6.5

Описание

In Eclipse GlassFish versions 5.1.0 to 6.2.5, there is a vulnerability in relative path traversal because it does not filter request path starting with './'. Successful exploitation could allow an remote unauthenticated attacker to access critical data, such as configuration files and deployed application source code.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
esm-apps/bionic

needs-triage

esm-apps/xenial

needs-triage

esm-infra/focal

DNE

focal

DNE

jammy

DNE

kinetic

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

Ссылки на источники

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
около 3 лет назад

In Eclipse GlassFish versions 5.1.0 to 6.2.5, there is a vulnerability in relative path traversal because it does not filter request path starting with './'. Successful exploitation could allow an remote unauthenticated attacker to access critical data, such as configuration files and deployed application source code.

CVSS3: 6.5
debian
около 3 лет назад

In Eclipse GlassFish versions 5.1.0 to 6.2.5, there is a vulnerability ...

CVSS3: 6.5
github
около 3 лет назад

Path Traversal In Eclipse GlassFish

6.5 Medium

CVSS3