Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-25724

Опубликовано: 26 мая 2021
Источник: nvd
CVSS3: 4.3
CVSS2: 4
EPSS Низкий

Описание

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity. Versions before resteasy 2.0.0.Alpha3 are affected.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:resteasy:*:*:*:*:*:*:*:*
Версия до 2.0.0 (исключая)
cpe:2.3:a:redhat:resteasy:2.0.0:alpha1:*:*:*:*:*:*
cpe:2.3:a:redhat:resteasy:2.0.0:alpha2:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:quarkus:quarkus:*:*:*:*:*:*:*:*
Версия до 1.11.2 (исключая)

EPSS

Процентиль: 33%
0.00132
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-567

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 4 лет назад

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity. Versions before resteasy 2.0.0.Alpha3 are affected.

CVSS3: 4.2
redhat
около 5 лет назад

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity. Versions before resteasy 2.0.0.Alpha3 are affected.

CVSS3: 4.3
debian
больше 4 лет назад

A flaw was found in RESTEasy, where an incorrect response to an HTTP r ...

CVSS3: 4.3
github
больше 4 лет назад

Unsynchronized Access to Shared Data in a Multithreaded Context in RESTEasy

EPSS

Процентиль: 33%
0.00132
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-567