Directory traversal vulnerability in the Visor GUI Console in GridGain before 1.7.16, 1.8.x before 1.8.12, 1.9.x before 1.9.7, and 8.x before 8.1.5 allows remote authenticated users to read arbitrary files on remote cluster nodes via a crafted path.
References
Link | Resource |
---|---|
http://www.openwall.com/lists/oss-security/2017/10/05/1 | Mailing List Third Party Advisory |
http://www.openwall.com/lists/oss-security/2017/10/05/1 | Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 03:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.openwall.com/lists/oss-security/2017/10/05/1 - Mailing List, Third Party Advisory |
Information
Published : 2017-10-10 01:30
Updated : 2024-11-21 03:13
NVD link : CVE-2017-14614
Mitre link : CVE-2017-14614
CVE.ORG link : CVE-2017-14614
JSON object : View
Products Affected
gridgain
- gridgain
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')