Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-6348

Опубликовано: 12 апр. 2017
Источник: debian

Описание

JacksonJsonpInterceptor in RESTEasy might allow remote attackers to conduct a cross-site script inclusion (XSSI) attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
resteasyfixed3.1.0-1package
resteasyno-dsajessiepackage
resteasy3.0fixed3.0.26-1package

Примечания

  • https://github.com/resteasy/Resteasy/commit/7cc46c65b11de69b87ef8850dc68cca3de8cd7c6 (3.1.0.CR1)

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 9 лет назад

JacksonJsonpInterceptor in RESTEasy might allow remote attackers to conduct a cross-site script inclusion (XSSI) attack.

CVSS3: 3.1
redhat
больше 9 лет назад

JacksonJsonpInterceptor in RESTEasy might allow remote attackers to conduct a cross-site script inclusion (XSSI) attack.

CVSS3: 6.1
nvd
почти 9 лет назад

JacksonJsonpInterceptor in RESTEasy might allow remote attackers to conduct a cross-site script inclusion (XSSI) attack.

CVSS3: 6.1
github
больше 3 лет назад

JacksonJsonpInterceptor susceptible to cross-site script inclusion (XSSI) attack