Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v49c-75x7-q86w

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

EPSS

Процентиль: 55%
0.00328
Низкий

Связанные уязвимости

nvd
больше 15 лет назад

Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.

debian
больше 15 лет назад

Oracle Mojarra uses an encrypted View State without a Message Authenti ...

EPSS

Процентиль: 55%
0.00328
Низкий