Логотип exploitDog
bind:CVE-2019-0202
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-0202

Количество 2

Количество 2

nvd логотип

CVE-2019-0202

больше 6 лет назад

The Apache Storm Logviewer daemon exposes HTTP-accessible endpoints to read/search log files on hosts running Storm. In Apache Storm versions 0.9.1-incubating to 1.2.2, it is possible to read files off the host's file system that were not intended to be accessible via these endpoints.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-r9pv-hg64-jqrp

больше 3 лет назад

Exposure of Sensitive Information in Apache Storm Logviewer

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-0202

The Apache Storm Logviewer daemon exposes HTTP-accessible endpoints to read/search log files on hosts running Storm. In Apache Storm versions 0.9.1-incubating to 1.2.2, it is possible to read files off the host's file system that were not intended to be accessible via these endpoints.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
github логотип
GHSA-r9pv-hg64-jqrp

Exposure of Sensitive Information in Apache Storm Logviewer

CVSS3: 7.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу