Description
hawtio 2.17.2 is vulnerable to Path Traversal. it is possible to input malicious zip files, which can result in the high-risk files after decompression being stored in any location, even leading to file overwrite.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1849 | hawtio 2.17.2 is vulnerable to Path Traversal. it is possible to input malicious zip files, which can result in the high-risk files after decompression being stored in any location, even leading to file overwrite. |
Github GHSA |
GHSA-p223-c4w6-q454 | hawtio vulnerable to Path Traversal |
References
History
Thu, 09 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-09T16:57:36.962Z
Reserved: 2023-05-22T00:00:00.000Z
Link: CVE-2023-33544
Updated: 2024-08-02T15:47:05.762Z
Status : Modified
Published: 2023-06-01T13:15:10.637
Modified: 2025-01-09T17:15:09.997
Link: CVE-2023-33544
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA