CVE-2018-14371
The getLocalePrefix function in ResourceManager.java in Eclipse Mojarra before 2.3.7 is affected by Directory Traversal
The getLocalePrefix function in ResourceManager.java in Eclipse Mojarra before 2.3.7 is affected by Directory Traversal via the loc parameter. A remote attacker can download configuration files or Java bytecodes from applications.
HIGH · CVSS 7.5
EPSS 0.01625
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0