Arbitrary File Access Vulnerability in Apache JSPWiki 2.9.0 to 2.11.0.M2

Arbitrary File Access Vulnerability in Apache JSPWiki 2.9.0 to 2.11.0.M2

CVE-2019-0225 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

A specially crafted url could be used to access files under the ROOT directory of the application on Apache JSPWiki 2.9.0 to 2.11.0.M2, which could be used by an attacker to obtain registered users' details.

Learn more about our Cis Benchmark Audit For Apache Http Server.