Oracle GlassFish Server Open Source Edition 3.0.1 (build 22) is vulnerable to unauthenticated local file inclusion vulnerabilities that allow remote attackers to request arbitrary files on the server.
id: CVE-2017-1000029
info:
name: Oracle GlassFish Server Open Source Edition 3.0.1 - Local File I
...