Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-2329

Опубликовано: 02 июн. 2011
Источник: nvd
CVSS2: 6.5
EPSS Низкий

Описание

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:rampart\/c:1.3.0:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.0069
Низкий

6.5 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 14 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

debian
больше 14 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestam ...

github
больше 3 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

EPSS

Процентиль: 71%
0.0069
Низкий

6.5 Medium

CVSS2

Дефекты

CWE-264