CVE-2014-0043 is a vulnerability in Apache Wicket
Published on October 2, 2017
In Apache Wicket 1.5.10 or 6.13.0, by issuing requests to special urls handled by Wicket, it is possible to check for the existence of particular classes in the classpath and thus check whether a third party library with a known security vulnerability is in use.
Products Associated with CVE-2014-0043
Want to know whenever a new CVE is published for Apache Wicket? stack.watch will email you.
Affected Versions
Apache Software Foundation Apache Wicket:- Version 1.5.10 is affected.
- Version 6.13.0 is affected.
Exploit Probability
EPSS
1.51%
Percentile
80.96%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.