Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7776
HistoryNov 13, 2018 - 7:08 a.m.

Directory Traversal

2018-11-1307:08:22
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.006

Percentile

78.0%

jetty is vulnerable to directory traversal attacks. The vulnerability exists due to the lack of sanitization of values in the file path, allowing %2e%2e%5c to be interpreted as ../, hence serving the requested files and causing directory traversal attacks.

EPSS

0.006

Percentile

78.0%