https://██████/ Vulnerable to CVE-2013-3827 (Directory-traversal vulnerability)

Disclosed: 2021-08-26 19:35:31 By team_tsk To deptofdefense
Medium
Vulnerability Details
**Description:** Hi team, https://█████/ using older version of Oracle JavaServer which is vulnerable to CVE-2013-3827. **POC:** https://█████/████ ## References https://www.securityfocus.com/bid/63052/info https://www.exploit-db.com/exploits/38802 ## Impact * Directory-traversal ## System Host(s) █████ ## Affected Product(s) and Version(s) Oracle JavaServer ## CVE Numbers CVE-2013-3827 ## Steps to Reproduce Go to https://██████████/██████ ## Suggested Mitigation/Remediation Actions Update your Oracle JavaServer
Actions
View on HackerOne
Report Stats
  • Report ID: 1280188
  • State: Closed
  • Substate: resolved
  • Upvotes: 3
Share this report