Логотип exploitDog
bind:CVE-2014-2857
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-2857

Количество 3

Количество 3

nvd логотип

CVE-2014-2857

почти 12 лет назад

The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 does not properly restrict access to files in the META-INF directory, which allows remote attackers to obtain sensitive information via a direct request. NOTE: this issue was SPLIT from CVE-2014-0053 due to different researchers per ADT5.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2014-2857

почти 12 лет назад

The default configuration of the Resources plugin 1.0.0 before 1.2.6 f ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-qh22-xhvg-2v6g

больше 3 лет назад

The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 does not properly restrict access to files in the META-INF directory, which allows remote attackers to obtain sensitive information via a direct request. NOTE: this issue was SPLIT from CVE-2014-0053 due to different researchers per ADT5.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-2857

The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 does not properly restrict access to files in the META-INF directory, which allows remote attackers to obtain sensitive information via a direct request. NOTE: this issue was SPLIT from CVE-2014-0053 due to different researchers per ADT5.

CVSS2: 5
0%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-2857

The default configuration of the Resources plugin 1.0.0 before 1.2.6 f ...

CVSS2: 5
0%
Низкий
почти 12 лет назад
github логотип
GHSA-qh22-xhvg-2v6g

The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 does not properly restrict access to files in the META-INF directory, which allows remote attackers to obtain sensitive information via a direct request. NOTE: this issue was SPLIT from CVE-2014-0053 due to different researchers per ADT5.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу