Описание
Padding oracle attacks
It was found that all OWASP ESAPI for Java up to version 2.0 RC2 are vulnerable to padding oracle attacks.
Пакеты
Наименование
org.owasp.esapi:esapi
maven
Затронутые версииВерсия исправления
< 2.0GA
2.0GA
Связанные уязвимости
CVSS3: 5.9
nvd
больше 4 лет назад
It was found that all OWASP ESAPI for Java up to version 2.0 RC2 are vulnerable to padding oracle attacks.