CVE-2014-0248
CVE-2014-0248
org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform (JBEAP) 5.2.0, and JBoss Enterprise Web Platform (JBEWP) 5.2.0 allows remote attackers to execute arbitrary code via a crafted authentication header, related to Seam logging.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://rhn.redhat.com/errata/RHSA-2014-0785.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0791.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0792.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0793.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0794.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1888.htmlhttp://secunia.com/advisories/59346http://secunia.com/advisories/59554http://secunia.com/advisories/59555http://www.securitytracker.com/id/1030457