CVE-2017-14614

Directory traversal vulnerability in the Visor GUI Console in GridGain before 1.7.16, 1.8.x before 1.8.12, 1.9.x before 1.9.7, and 8.x before 8.1.5 allows remote authenticated users to read arbitrary files on remote cluster nodes via a crafted path.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 64%
VendorProductVersion
gridgaingridgain
8.0.0:ea1
gridgaingridgain
8.0.0:ea2
gridgaingridgain
8.0.0:ea3
gridgaingridgain
8.0.0:ea4
gridgaingridgain
8.0.0:ea5
gridgaingridgain
8.0.1
gridgaingridgain
8.0.1:ea1
gridgaingridgain
8.0.1:ea2
gridgaingridgain
8.0.1:ea3
gridgaingridgain
8.0.1:ea4
gridgaingridgain
8.0.1:ea5
gridgaingridgain
8.0.1:ea6
gridgaingridgain
8.0.1:ea7
gridgaingridgain
8.0.1:ea8
gridgaingridgain
8.0.1:ea9
gridgaingridgain
8.0.2:ea1
gridgaingridgain
8.0.2:ea2
gridgaingridgain
8.0.2:ea3
gridgaingridgain
8.0.3:ea1
gridgaingridgain
8.0.3:ea10
gridgaingridgain
8.0.3:ea11
gridgaingridgain
8.0.3:ea12
gridgaingridgain
8.0.3:ea13
gridgaingridgain
8.0.3:ea14
gridgaingridgain
8.0.3:ea15
gridgaingridgain
8.0.3:ea16
gridgaingridgain
8.0.3:ea2
gridgaingridgain
8.0.3:ea3
gridgaingridgain
8.0.3:ea4
gridgaingridgain
8.0.3:ea5
gridgaingridgain
8.0.3:ea6
gridgaingridgain
8.0.3:ea7
gridgaingridgain
8.0.3:ea8
gridgaingridgain
8.0.3:ea9
gridgaingridgain
8.0.4:ea1
gridgaingridgain
8.1.1
gridgaingridgain
8.1.2
gridgaingridgain
8.1.3
gridgaingridgain
8.1.3:p1
gridgaingridgain
8.1.3:p2
gridgaingridgain
8.1.3:p3
gridgaingridgain
8.1.3:p4
gridgaingridgain
8.1.3:p5
gridgaingridgain
8.1.4
gridgaingridgain
8.1.4:p1
gridgaingridgain
8.1.4:p2
gridgaingridgain
8.1.4:p3
gridgaingridgain
1.9.1
gridgaingridgain
1.9.2
gridgaingridgain
1.9.3
gridgaingridgain
1.9.4
gridgaingridgain
1.9.5
gridgaingridgain
1.9.6
gridgaingridgain
1.8.1
gridgaingridgain
1.8.2
gridgaingridgain
1.8.3
gridgaingridgain
1.8.4
gridgaingridgain
1.8.5
gridgaingridgain
1.8.6
gridgaingridgain
1.8.7
gridgaingridgain
1.8.8
gridgaingridgain
1.8.9
gridgaingridgain
1.8.10
gridgaingridgain
1.8.11
gridgaingridgain
𝑥
≤ 1.7.15
𝑥
= Vulnerable software versions