CVE-2013-4128
CVE-2013-4128
Red Hat JBoss Enterprise Application Platform (EAP) 6.1.0 does not properly cache EJB invocations by remote-naming, which allows remote attackers to hijack sessions by using a remoting client.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://osvdb.org/96217http://rhn.redhat.com/errata/RHSA-2013-1151.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1152.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1437.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=984795http://secunia.com/advisories/54508https://exchange.xforce.ibmcloud.com/vulnerabilities/86386http://www.securitytracker.com/id/1028898