Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7748
HistoryNov 12, 2018 - 8:02 a.m.

Path Traversal

2018-11-1208:02:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.019

Percentile

88.9%

Apache Tomcat servlets-webdav is vulnerable to path traversal. A remote authenticated user is able to submit absolute file paths to read arbitrary files via a WebDAV write request which specifies an entry with a SYSTEM tag.

References