The Apache Sling JCR ContentLoader 2.1.4 XmlReader used in the Sling JCR content loader module makes it possible to import arbitrary files in the content repository, including local files, causing potential information leaks. Users should upgrade to version 2.1.6 of the JCR ContentLoader
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apache

Published: 2017-05-09T00:00:00

Updated: 2018-01-08T20:57:01

Reserved: 2012-06-14T00:00:00


Link: CVE-2012-3353

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-01-09T02:29:02.613

Modified: 2023-11-07T02:11:32.967


Link: CVE-2012-3353

JSON object: View

cve-icon Redhat Information

No data.

CWE