Security Advisory

CVE-2019-10242

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-04-09 15:42:42
Last updated 2024-08-04 22:17:20
Assigner eclipse
CVSS score not scored
State PUBLISHED

Description

In Eclipse Kura versions up to 4.0.0, the SkinServlet did not checked the path passed during servlet call, potentially allowing path traversal in get requests for a limited number of file types.