Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2672

Опубликовано: 01 июн. 2012
Источник: redhat
CVSS2: 1.9
EPSS Низкий

Описание

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=829560Mojarra: deployed web applications can read FacesContext from other applications under certain conditions

EPSS

Процентиль: 18%
0.00057
Низкий

1.9 Low

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

nvd
больше 13 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

debian
больше 13 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext ref ...

github
больше 3 лет назад

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

EPSS

Процентиль: 18%
0.00057
Низкий

1.9 Low

CVSS2

Уязвимость CVE-2012-2672