Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-4007

Опубликовано: 20 окт. 2010
Источник: debian
EPSS Низкий

Описание

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mojarranot-affectedpackage

EPSS

Процентиль: 55%
0.00328
Низкий

Связанные уязвимости

nvd
больше 15 лет назад

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

github
больше 3 лет назад

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

EPSS

Процентиль: 55%
0.00328
Низкий