{"id":"GHSA-prfw-3qx6-g9xr","summary":"Improper Limitation of a Pathname to a Restricted Directory in Jboss EAP Undertow","details":"It was found that the AJP connector in undertow, as shipped in Jboss EAP 7.1.0.GA, does not use the ALLOW_ENCODED_SLASH option and thus allow the the slash / anti-slash characters encoded in the url which may lead to path traversal and result in the information disclosure of arbitrary local files.","aliases":["CVE-2018-1048"],"modified":"2023-11-08T03:59:43.450117Z","published":"2022-05-13T01:12:24Z","database_specific":{"nvd_published_at":"2018-01-24T23:29:00Z","cwe_ids":["CWE-22"],"severity":"HIGH","github_reviewed":true,"github_reviewed_at":"2022-06-30T14:01:42Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-1048"},{"type":"WEB","url":"https://access.redhat.com/errata/RHSA-2018:0478"},{"type":"WEB","url":"https://access.redhat.com/errata/RHSA-2018:0479"},{"type":"WEB","url":"https://access.redhat.com/errata/RHSA-2018:0480"},{"type":"WEB","url":"https://access.redhat.com/errata/RHSA-2018:0481"},{"type":"WEB","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1534343"}],"affected":[{"package":{"name":"org.jboss.eap:wildfly-undertow","ecosystem":"Maven","purl":"pkg:maven/org.jboss.eap/wildfly-undertow"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"7.1.0.GA"},{"fixed":"7.1.1.GA"}]}],"versions":["7.1.0.GA"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-prfw-3qx6-g9xr/GHSA-prfw-3qx6-g9xr.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}