CVE-2018-14371

Publication date

2018-07-18 12:00:00

Family

mitre

State

PUBLISHED

Description

The getLocalePrefix function in ResourceManager.java in Eclipse Mojarra before 2.3.7 is affected by Directory Traversal via the loc parameter. A remote attacker can download configuration files or Java bytecodes from applications.