CVE Published: 20/08/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: ibm |
Vendor: IBM |
Product: SDK, Java Technology Edition Status : PUBLISHED
CVE-2018-1656 Description
The IBM Java Runtime Environment\'s Diagnostic Tooling Framework for Java (DTFJ) (IBM SDK, Java Technology Edition 6.0 , 7.0, and 8.0) does not protect against path traversal attacks when extracting compressed dump files. IBM X-Force ID: 144882.