Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-70099
HistoryAug 12, 2021 - 12:00 a.m.

Apache ServiceComb Service-Center path traversal vulnerability

2021-08-1200:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
apache
servicecomb
service-center
path traversal
vulnerability
restful
registry
microservice
directory jump
1.x.x
apache foundation
discovery
management
cnvd

EPSS

0.001

Percentile

39.2%

Apache ServiceComb Service-Center is a Restful-based service registry from the Apache Foundation that provides microservice discovery and microservice management. Apache ServiceComb Service-Center is vulnerable to a path traversal vulnerability in version 1.x.x. The vulnerability stems from A network system or product fails to properly filter special elements in a resource or file path. An attacker could use the directory jump symbol to access resources that are not in the current directory.

EPSS

0.001

Percentile

39.2%

Related for CNVD-2021-70099