ZeroHour

CVE-2019-0225

CVSS 3.1
7.5 high
EPSS
10%p95
Published
()
Modified
Description

A specially crafted url could be used to access files under the ROOT directory of the application on Apache JSPWiki 2.9.0 to 2.11.0.M2, which could be used by an attacker to obtain registered users' details.

Vendors
apache
Products
jspwiki
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.