Vulnerabilities > Apache > Pluto > High

DATE CVE VULNERABILITY TITLE RISK
2018-06-27 CVE-2018-1306 Information Exposure vulnerability in Apache Pluto 3.0.0
The PortletV3AnnotatedDemo Multipart Portlet war file code provided in Apache Pluto version 3.0.0 could allow a remote attacker to obtain sensitive information, caused by the failure to restrict path information provided during a file upload.
network
low complexity
apache CWE-200
7.5