Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-3856
HistoryAug 26, 2022 - 4:15 p.m.

Design/Logic Flaw

2022-08-2616:15:00
PRIOn knowledge base
www.prio-n.com
6
classloadertheme
classpaththemeresourceproviderfactory
logic flaw
unauthorized access
files
nvd

4.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.9%

ClassLoaderTheme and ClasspathThemeResourceProviderFactory allows reading any file available as a resource to the classloader. By sending requests for theme resources with a relative path from an external HTTP client, the client will receive the content of random files if available.

CPENameOperatorVersion
keycloaklt15.1.0

4.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.9%

Related for PRION:CVE-2021-3856