cve/2019/CVE-2019-18393.md
2024-05-26 14:27:05 +02:00

882 B

CVE-2019-18393

Description

PluginServlet.java in Ignite Realtime Openfire through 4.4.2 does not ensure that retrieved files are located under the Openfire home directory, aka a directory traversal vulnerability.

POC

Reference

No PoCs from references.

Github