Description
hawtio before versions 2.0-beta-1, 2.0-beta-2 2.0-m1, 2.0-m2, 2.0-m3, and 1.5 is vulnerable to a path traversal that leads to a NullPointerException with a full stacktrace. An attacker could use this flaw to gather undisclosed information from within hawtio's root.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-3372 | hawtio before versions 2.0-beta-1, 2.0-beta-2 2.0-m1, 2.0-m2, 2.0-m3, and 1.5 is vulnerable to a path traversal that leads to a NullPointerException with a full stacktrace. An attacker could use this flaw to gather undisclosed information from within hawtio's root. |
Github GHSA |
GHSA-9g8w-pjpr-prr4 | Path Traversal in io.hawt:project |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T14:02:06.485Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2594
No data.
Status : Modified
Published: 2018-05-08T17:29:00.670
Modified: 2024-11-21T03:23:47.593
Link: CVE-2017-2594
OpenCVE Enrichment
No data.
EUVD
Github GHSA