NA

CVE-2022-45129

Published: 10/11/2022 Updated: 20/01/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Payara prior to 2022-11-04, when deployed to the root context, allows malicious users to visit META-INF and WEB-INF, a different vulnerability than CVE-2022-37422. This affects Payara Platform Community prior to 4.1.2.191.38, 5.x prior to 5.2022.4, and 6.x prior to 6.2022.1, and Payara Platform Enterprise prior to 5.45.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

payara payara

Exploits

Payara Platform suffers from a path traversal vulnerability Enterprise versions prior to 5450 and Community versions prior to 620221, 520224, and 41219138 are affected ...