The default configuration of javax.servlet.context.tempdir in Apache Commons FileUpload 1.0 through 1.2.2 uses the /tmp directory for uploaded files, which allows local users to overwrite arbitrary files via an unspecified symlink attack.
CVSS Details
- CVSS 3.1 Base Score: 5.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade libcommons-fileupload-java | Jul 30, 2024 | Mar 15, 2013 |
| Gentoo Linux | — | Upgrade dev-java/commons-fileupload. | Jul 19, 2021 | Mar 15, 2013 |
| Hpsim | — | Upgrade to the latest version of HP Systems Insight Manager | Oct 13, 2015 | Mar 15, 2013 |
| Red Hat Jboss Eap | — | — | Sep 19, 2024 | Mar 6, 2013 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Mar 6, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub