CVE-2017-1000029

Oracle, GlassFish Server Open Source Edition 3.0.1 (build 22) is vulnerable to Local File Inclusion vulnerability, that makes it possible to include arbitrary files on the server, this vulnerability can be exploited without any prior authentication.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:glassfish_server:3.0.1:*:*:*:open_source:*:*:*

History

21 Nov 2024, 03:04

Type Values Removed Values Added
References () https://www.trustwave.com/Resources/Security-Advisories/Advisories/TWSL2016-011/?fid=8037 - Mailing List, Third Party Advisory () https://www.trustwave.com/Resources/Security-Advisories/Advisories/TWSL2016-011/?fid=8037 - Mailing List, Third Party Advisory

Information

Published : 2017-07-17 13:18

Updated : 2025-04-20 01:37


NVD link : CVE-2017-1000029

Mitre link : CVE-2017-1000029

CVE.ORG link : CVE-2017-1000029


JSON object : View

Products Affected

oracle

  • glassfish_server
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor