Title:Potential Local File Read Vulnerability In JVM Based Application Status:test Description:Detects potential local file read vulnerability in JVM based apps.
If the exceptions are caused due to user input and contain path traversal payloads then it's a red flag.
References: -https://www.wix.engineering/post/threat-and-vulnerability-hunting-with-application-server-error-logs Author: Moti Harmats Date: 2023-02-11 modified:None Tags:
-'attack.initial-access'
-'attack.t1190'
Logsource:
category: application
product: jvm
definition: Requirements: application error logs must be collected (with LOG_LEVEL=ERROR and above)