Описание
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | axis | Will not fix | ||
| Red Hat Enterprise Linux 6 | axis | Will not fix | ||
| Red Hat Software Collections | rh-eclipse46-axis | Will not fix |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-79
https://bugzilla.redhat.com/show_bug.cgi?id=1611835axis: cross-site scripting (XSS) attack in the default servlet/services
EPSS
Процентиль: 85%
0.02564
Низкий
5.4 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 7 лет назад
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.
CVSS3: 6.1
nvd
больше 7 лет назад
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.
CVSS3: 6.1
debian
больше 7 лет назад
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site ...
EPSS
Процентиль: 85%
0.02564
Низкий
5.4 Medium
CVSS3