Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-0227

Опубликовано: 12 фев. 2015
Источник: debian
EPSS Средний

Описание

Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements configuration via a vectors related to "wrapping attacks."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wss4jfixed1.6.15-2package
wss4jnot-affectedwheezypackage
wss4jnot-affectedsqueezepackage

EPSS

Процентиль: 94%
0.13872
Средний

Связанные уязвимости

ubuntu
почти 11 лет назад

Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements configuration via a vectors related to "wrapping attacks."

redhat
почти 11 лет назад

Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements configuration via a vectors related to "wrapping attacks."

nvd
почти 11 лет назад

Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements configuration via a vectors related to "wrapping attacks."

github
больше 3 лет назад

Improper Access Control in Apache WSS4J

EPSS

Процентиль: 94%
0.13872
Средний