CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects Apache.
CVE
CVE-2019-0202
Severity
HIGH
CVSS
7.5
EPSS
2.04%
Apache
Original NVD Description
The Apache Storm Logviewer daemon exposes HTTP-accessible endpoints to read/search log files on hosts running Storm. In Apache Storm versions 0.9.1-incubating to 1.2.2, it is possible to read files off the host's file system that were not intended to be accessible via these endpoints.
Related CVEs
Other vulnerabilities affecting the same vendor(s)