Описание
Apache Shiro before 1.3.2 allows attackers to bypass intended servlet filters and gain access by leveraging use of a non-root servlet context path.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| shiro | fixed | 1.3.2-1 | package | |
| shiro | no-dsa | jessie | package |
EPSS
Процентиль: 95%
0.0968
Низкий
Связанные уязвимости
CVSS3: 7.5
ubuntu
почти 10 лет назад
Apache Shiro before 1.3.2 allows attackers to bypass intended servlet filters and gain access by leveraging use of a non-root servlet context path.
CVSS3: 5.6
redhat
почти 10 лет назад
Apache Shiro before 1.3.2 allows attackers to bypass intended servlet filters and gain access by leveraging use of a non-root servlet context path.
CVSS3: 7.5
nvd
почти 10 лет назад
Apache Shiro before 1.3.2 allows attackers to bypass intended servlet filters and gain access by leveraging use of a non-root servlet context path.
EPSS
Процентиль: 95%
0.0968
Низкий