Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-34478
HistoryJul 24, 2023 - 7:15 p.m.

Path traversal

2023-07-2419:15:00
PRIOn knowledge base
www.prio-n.com
16
apache shiro
path traversal
vulnerability
authentication bypass
update
nvd

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.9%

Apache Shiro, before 1.12.0 or 2.0.0-alpha-3, may be susceptible to a path traversal attack that results in an authentication bypass when used together with APIs or other web frameworks that route requests based on non-normalized requests.

Mitigation:Β Update to Apache Shiro 1.12.0+ or 2.0.0-alpha-3+

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.9%