Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-08372
HistoryJan 27, 2022 - 12:00 a.m.

Apache Karaf path traversal vulnerability

2022-01-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
apache karaf
path traversal
vulnerability
path traversal attack
obr:* command
cnvd

EPSS

0.001

Percentile

17.9%

Apache Karaf is an open source, modern, multi-format, lightweight, powerful, OSGI-certified enterprise container that provides many features to help developers and users deploy applications more flexibly.A path traversal vulnerability exists in Apache Karaf. The vulnerability is related to the obr:* command. An attacker could exploit this vulnerability to conduct path traversal attacks.

EPSS

0.001

Percentile

17.9%