Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36742
HistoryAug 19, 2022 - 4:06 a.m.

Path Traversal

2022-08-1904:06:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
payara-micro path-traversal vulnerability gflauncher.java

EPSS

0.002

Percentile

52.9%

payara-micro is vulnerable to path traversal. The vulnerability exists because the setClasspath function of GFLauncher.java does not properly set the ext directory, allowing an attacker to access files outside the expected directory.

EPSS

0.002

Percentile

52.9%