1 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

OpenAM Web Policy Agent (OpenAM Consortium Edition) provided by OpenAM Consortium parses URLs improperly, leading to a path traversal vulnerability(CWE-22). Furthermore, a crafted URL may be evaluated incorrectly. • https://github.com/openam-jp/web-agents/issues/3 https://jvn.jp/en/vu/JVN91740661 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •