Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2010-3863

почти 16 лет назад

Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize URI paths before comparing them to entries in the shiro.ini file, which allows remote attackers to bypass intended access restrictions via a crafted request, as demonstrated by the /./account/index.jsp URI.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2010-3863

почти 16 лет назад

Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize ...

CVSS2: 5
EPSS: Средний
github логотип

GHSA-3jx9-mgwx-4q83

больше 4 лет назад

Apache Shiro Path Traversal vulnerability

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2010-3863

Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize URI paths before comparing them to entries in the shiro.ini file, which allows remote attackers to bypass intended access restrictions via a crafted request, as demonstrated by the /./account/index.jsp URI.

CVSS2: 5
55%
Средний
почти 16 лет назад
debian логотип
CVE-2010-3863

Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize ...

CVSS2: 5
55%
Средний
почти 16 лет назад
github логотип
GHSA-3jx9-mgwx-4q83

Apache Shiro Path Traversal vulnerability

55%
Средний
больше 4 лет назад

Уязвимостей на страницу