Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-4007

Опубликовано: 20 окт. 2010
Источник: debian
EPSS Низкий

Описание

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mojarranot-affectedpackage

EPSS

Процентиль: 60%
0.01014
Низкий

Связанные уязвимости

nvd
почти 16 лет назад

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

github
около 4 лет назад

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

EPSS

Процентиль: 60%
0.01014
Низкий