VYPR

Uberfire

by Red Hat

Source repositories

CVEs (1)

  • CVE-2014-8114Feb 20, 2015
    risk 0.00cvss epss 0.03

    The UberFire Framework 0.3.x does not properly restrict paths, which allows remote attackers to (1) execute arbitrary code by uploading crafted content to FileUploadServlet or (2) read arbitrary files via vectors involving FileDownloadServlet.