Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-7675
HistoryAug 11, 2017 - 2:29 a.m.

Directory traversal

2017-08-1102:29:00
PRIOn knowledge base
www.prio-n.com
10

7.4 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.1%

The HTTP/2 implementation in Apache Tomcat 9.0.0.M1 to 9.0.0.M21 and 8.5.0 to 8.5.15 bypassed a number of security checks that prevented directory traversal attacks. It was therefore possible to bypass security constraints using a specially crafted URL.

References

7.4 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.1%