Lucene search

K
osvGoogleOSV:GHSA-QMGJ-5H75-JR67
HistoryMay 01, 2022 - 7:02 a.m.

Jetty Directory Traversal Vulnerability

2022-05-0107:02:10
Google
osv.dev
5
jetty
directory traversal
vulnerability
remote attack
arbitrary files
url
cve-2005-3747

AI Score

6.4

Confidence

Low

EPSS

0.011

Percentile

84.6%

Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allows remote attackers to read arbitrary files via a %2e%2e%5c (encoded ../) in the URL. NOTE: this might be the same issue as CVE-2005-3747.

AI Score

6.4

Confidence

Low

EPSS

0.011

Percentile

84.6%