Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2672

Опубликовано: 01 июн. 2012
Источник: redhat
CVSS2: 1.9
EPSS Низкий

Описание

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=829560Mojarra: deployed web applications can read FacesContext from other applications under certain conditions

EPSS

Процентиль: 43%
0.00545
Низкий

1.9 Low

CVSS2

Связанные уязвимости

ubuntu
около 14 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

nvd
около 14 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

debian
около 14 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext ref ...

github
около 4 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

EPSS

Процентиль: 43%
0.00545
Низкий

1.9 Low

CVSS2