Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Laurent Roussel

#45200of 53,633
5.5Total CVSS
Vulnerabilities · 1
PT-2018-9889
5.5
2018-01-24
Red Hat · Wildfly · CVE-2018-1047
Name of the Vulnerable Software and Affected Versions: Wildfly version 9.x Description: A flaw was found in Wildfly, where a path traversal vulnerability through the `org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource` method could lead to information disclosure of arbitrary local files. Recommendations: For Wildfly version 9.x, consider restricting access to the `org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource` method as a temporary workaround until a patch is available.