CVE-2018-1047
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.5%
exploitation probability
0.5%top 61% of all CVEs
observed exploitation
nono source reports it
A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource method could lead to information disclosure of arbitrary local files.
Affected products
Red Hat, Inc. · WildflyReferences
https://access.redhat.com/errata/RHSA-2018:1247https://access.redhat.com/errata/RHSA-2018:1248https://access.redhat.com/errata/RHSA-2018:1249https://access.redhat.com/errata/RHSA-2018:1251https://access.redhat.com/errata/RHSA-2018:2938https://bugzilla.redhat.com/show_bug.cgi?id=1528361https://issues.jboss.org/browse/WFLY-9620