CVE-2016-7041
13Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 6.5epss 4.0%
probabilidad de explotación
4.0%top 10% de las CVE
explotación observada
noninguna fuente lo reporta
Drools Workbench contains a path traversal vulnerability. The vulnerability allows a remote, authenticated attacker to bypass the directory restrictions and retrieve arbitrary files from the affected host.
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Productos afectados
Red Hat · Drools WorkbenchReferencias
http://rhn.redhat.com/errata/RHSA-2016-2822.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2823.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2937.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2938.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-7041http://www.securityfocus.com/bid/94566http://www.securitytracker.com/id/1037406