← Back to CVE List

CVE-2018-9159

Published: 2018-03-31T21:29Z
Last Modified: 2024-11-21T04:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In Spark before 2.7.2, a remote attacker can read unintended static files via various representations of absolute or relative pathnames, as demonstrated by file: URLs and directory traversal sequences. NOTE: this product is unrelated to Ignite Realtime Spark. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt