CVE-2013-4373 Information

Description

The storeFiles method in JPADriftServerBean in Red Hat JBoss Operations Network (JON) 3.1.2 allows local users to load arbitrary drift files into a server by writing the files to the temporary directory that is used to unpack zip files.

Reference

http://rhn.redhat.com/errata/RHSA-2013-1448.html https://bugzilla.redhat.com/show_bug.cgi?id=1011824 https://exchange.xforce.ibmcloud.com/vulnerabilities/88179

Share on: