cbcvebase.
CVE-2014-0115
published 2017-10-30

CVE-2014-0115: Directory traversal vulnerability in the log viewer in Apache Storm 0.9.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the file…

high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
Directory traversal vulnerability in the log viewer in Apache Storm 0.9.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to log.

Affected

1 ranges
VendorProductVersion rangeFixed in
apachestorm