Apache Jena Administrative File Creation Vulnerability Outside Server Directory

Vulnerability

A vulnerability exists in Apache Jena Fuseki server versions prior to 5.4.0, allowing users with administrator access to create database files outside the designated file area of the server. This issue could lead to unauthorized file access or manipulation. Users are advised to upgrade to version 5.5.0, which addresses this vulnerability.

Impact

Exploitation of this vulnerability could result in unauthorized file creation outside the server's designated file area, potentially leading to file access or manipulation issues.

Remediation

Users should upgrade to Apache Jena version 5.5.0 or later, where this vulnerability has been fixed.

Added: Jul 21, 2025, 10:29 AM
Updated: Jul 21, 2025, 10:29 AM

Vulnerability Rating

Custom Algorithm
spread
5.4
impact
0.0
exploitability
2.8
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.