漏洞描述 Payara Micro Community是开发中容器化Jakarta EE(Java EE)微服务部署的开源、轻量级中间件平台。Payara MicroCommunity microprofile-config.properties文件配置错误的情况下可被任意用户读取,获取敏感信息
相关漏洞推荐 POC CVE-2025-49706: Microsoft SharePoint Server - Authentication Bypass (CVE-2025-53770)Microsoft SharePoint Server反序列化漏洞允许远程代码执行 InvisionCommunity存在代码注入漏洞(CVE-2025-47916) POC CVE-2019-0604: Microsoft SharePoint - Remote Code Execution POC CVE-2020-0646: Microsoft .NET Framework - Remote Code Execution POC CVE-2000-0114: Microsoft FrontPage Extensions - Information Disclosure POC CVE-2008-1547: Microsoft OWA Exchange Server 2003 - 'redir.asp' Open Redirection POC CVE-2015-1635: Microsoft Windows 'HTTP.sys' - Remote Code Execution POC CVE-2016-7552: Trend Micro Threat Discovery Appliance 2.6.1062r1 - Authentication Bypass POC CVE-2018-18775: Microstrategy Web 7 - Cross-Site Scripting POC CVE-2018-18777: Microstrategy Web 7 - Local File Inclusion POC CVE-2019-14696: Open-School 3.0/Community Edition 2.3 - Cross-Site Scripting POC CVE-2019-18957: MicroStrategy Library <11.1.3 - Cross-Site Scripting