Severity
Medium
Analysis Summary
CVE-2022-47501
Apache OFBiz could allow a remote attacker to obtain sensitive information. By sending a specially crafted request, an attacker could exploit this vulnerability to obtain arbitrary files.
Impact
- Information Disclosure
Indicators Of Compromise
CVE
- CVE-2022-47501
Affected Vendors
Apache
Affected Products
- Apache OFBiz 18.12.06
Remediation
Upgrade to the latest version of Apache OFBiz, available from the Apache Web site.