Логотип exploitDog
bind:CVE-2018-12542
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-12542

Количество 2

Количество 2

nvd логотип

CVE-2018-12542

больше 7 лет назад

In version from 3.0.0 to 3.5.3 of Eclipse Vert.x, the StaticHandler uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize '\' (forward slashes) sequences that can resolve to a location that is outside of that directory when running on Windows Operating Systems.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-h39x-m55c-v55h

больше 7 лет назад

Eclipse Vert.x does not properly neutralize '' (forward slashes) sequences that can resolve to an external location

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-12542

In version from 3.0.0 to 3.5.3 of Eclipse Vert.x, the StaticHandler uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize '\' (forward slashes) sequences that can resolve to a location that is outside of that directory when running on Windows Operating Systems.

CVSS3: 9.8
1%
Низкий
больше 7 лет назад
github логотип
GHSA-h39x-m55c-v55h

Eclipse Vert.x does not properly neutralize '' (forward slashes) sequences that can resolve to an external location

CVSS3: 9.8
1%
Низкий
больше 7 лет назад

Уязвимостей на страницу