CVE-2022-4594 is a critical path traversal vulnerability (CWE-22) affecting the deployWar function within the WarRoller.java file of the drogatkin TJWS2 web server. This flaw allows an unauthenticated, remote attacker to manipulate file paths, potentially leading to full compromise of the affected system. Rated with a CVSS score of 9.8 (Critical), the vulnerability has a high impact on confidentiality, integrity, and availability, but currently lacks public exploit intelligence, Metasploit modules, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2022-05-24CPE matchmatch criteria | cpe:2.3:a:tjws2_project:tjws2:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.