01642 06 11 11 Arrange Call

Undertow Path Traversal Vulnerability in JBoss EAP

CVE-2024-1459 · MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CVE-2024-1459

A path traversal vulnerability was found in Undertow. This issue may allow a remote attacker to append a specially-crafted sequence to an HTTP request for an application deployed to JBoss EAP, which may permit access to privileged or restricted files and directories.

Learn more about our Web Application Penetration Testing UK.