CVE-2016-7041: Path Traversal
Published Sep 10, 2018
·Updated
Drools Workbench contains a path traversal vulnerability. The vulnerability allows a remote, authenticated attacker to bypass the directory restrictions and retrieve arbitrary files from the affected host.
Affected Software
2 affected components
redhat Jboss Brms=6.3
redhat Jboss Drools
Event History
Sep 10, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2016-7041?
CVE-2016-7041 is a path traversal vulnerability in Drools Workbench.
2
What is the severity of CVE-2016-7041?
The severity of CVE-2016-7041 is medium with a CVSS score of 6.5.
3
How does CVE-2016-7041 affect Drools Workbench?
CVE-2016-7041 allows a remote, authenticated attacker to bypass directory restrictions and retrieve arbitrary files from the affected host.
4
What software is affected by CVE-2016-7041?
CVE-2016-7041 affects Redhat Jboss Brms version 6.3 and Redhat Jboss Drools.
5
How can I fix CVE-2016-7041?
It is recommended to update to the latest version of Drools Workbench to fix CVE-2016-7041.