← Back

CVE-2014-2858

nvd nist
Published: Apr 15, 2014Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Directory traversal vulnerability in the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 allows remote attackers to obtain sensitive information via unspecified vectors related to a "configured block." NOTE: this issue was SPLIT from CVE-2014-0053 per ADT2 due to different vulnerability types.

Affected (38)

2 products
Grails Resources
Grails
Configuration A
38 vulnerable
Vulnerable SoftwareAffected Versions
Gopivotal
Version 1.0.0
Version 1.0.2
Version 1.1.0
Version 1.1.1
Version 1.1.2
Version 1.1.4
Version 1.1.5
Version 1.1.6
Version 1.2.0
Version 1.2.1
Version 1.2.2
Version 1.2.3
Version 1.2.4
Version 1.2.5
Gopivotal
Version 2.0.0
Version 2.0.1
Version 2.0.2
Version 2.0.3
Version 2.0.4
Version 2.1.0
Version 2.1.1
Version 2.1.2
Version 2.1.3
Version 2.1.4
Version 2.1.5
Version 2.2.0
Version 2.2.1
Version 2.2.2
Version 2.2.3
Version 2.2.4
Version 2.2.5
Version 2.3.0
Version 2.3.1
Version 2.3.2
Version 2.3.3
Version 2.3.4
Version 2.3.5
Version 2.3.6

References (6)

Timeline

No history available yet.