CVE Published: 09/04/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: eclipse |
Vendor: The Eclipse Foundation |
Product: Eclipse Kura Status : PUBLISHED
CVE-2019-10242 Description
In Eclipse Kura versions up to 4.0.0, the SkinServlet did not checked the path passed during servlet call, potentially allowing path traversal in get requests for a limited number of file types.