Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cw6w-q88j-6mqf

Опубликовано: 08 нояб. 2019
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

Potential session hijack in Apache CXF

Apache CXF before 3.3.4 and 3.2.11 provides all of the components that are required to build a fully fledged OpenId Connect service. There is a vulnerability in the access token services, where it does not validate that the authenticated principal is equal to that of the supplied clientId parameter in the request. If a malicious client was able to somehow steal an authorization code issued to another client, then they could exploit this vulnerability to obtain an access token for the other client.

Пакеты

Наименование

org.apache.cxf:cxf

maven
Затронутые версииВерсия исправления

< 3.2.11

3.2.11

Наименование

org.apache.cxf:cxf

maven
Затронутые версииВерсия исправления

>= 3.3.0, < 3.3.4

3.3.4

EPSS

Процентиль: 95%
0.17995
Средний

9.8 Critical

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 8.1
redhat
больше 6 лет назад

Apache CXF before 3.3.4 and 3.2.11 provides all of the components that are required to build a fully fledged OpenId Connect service. There is a vulnerability in the access token services, where it does not validate that the authenticated principal is equal to that of the supplied clientId parameter in the request. If a malicious client was able to somehow steal an authorization code issued to another client, then they could exploit this vulnerability to obtain an access token for the other client.

CVSS3: 9.8
nvd
больше 6 лет назад

Apache CXF before 3.3.4 and 3.2.11 provides all of the components that are required to build a fully fledged OpenId Connect service. There is a vulnerability in the access token services, where it does not validate that the authenticated principal is equal to that of the supplied clientId parameter in the request. If a malicious client was able to somehow steal an authorization code issued to another client, then they could exploit this vulnerability to obtain an access token for the other client.

CVSS3: 9.8
fstec
около 6 лет назад

Уязвимость службы OpenId Connect каркаса для веб-сервисов Apache CXF, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 95%
0.17995
Средний

9.8 Critical

CVSS3

Дефекты

CWE-863