0.002 Low
EPSS
Percentile
52.3%
Directory traversal vulnerability in the log viewer in Apache Storm 0.9.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to log.
..
issues.apache.org/jira/browse/STORM-269
mail-archives.apache.org/mod_mbox/storm-dev/201404.mbox/%3CJIRA.12704141.1395964296891.201561.1398799995645@arcas%3E
nvd.nist.gov/vuln/detail/CVE-2014-0115