5
CVSSv2

CVE-2017-2594

Published: 08/05/2018 Updated: 09/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

hawtio prior to 2.0-beta-1, 2.0-beta-2 2.0-m1, 2.0-m2, 2.0-m3, and 1.5 is vulnerable to a path traversal that leads to a NullPointerException with a full stacktrace. An attacker could use this flaw to gather undisclosed information from within hawtio's root.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hawt hawtio

Vendor Advisories

It was found that a path traversal vulnerability in hawtio leads to a NullPointerException with a full stacktrace An attacker could use this flaw to gather undisclosed information from within hawtio's root ...