Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-25724

Опубликовано: 16 нояб. 2020
Источник: redhat
CVSS3: 4.2
EPSS Низкий

Описание

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity. Versions before resteasy 2.0.0.Alpha3 are affected.

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-567
https://bugzilla.redhat.com/show_bug.cgi?id=1899354resteasy: information disclosure via HTTP response reuse

EPSS

Процентиль: 33%
0.00132
Низкий

4.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 4 лет назад

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity. Versions before resteasy 2.0.0.Alpha3 are affected.

CVSS3: 4.3
nvd
больше 4 лет назад

A flaw was found in RESTEasy, where an incorrect response to an HTTP request is provided. This flaw allows an attacker to gain access to privileged information. The highest threat from this vulnerability is to confidentiality and integrity. Versions before resteasy 2.0.0.Alpha3 are affected.

CVSS3: 4.3
debian
больше 4 лет назад

A flaw was found in RESTEasy, where an incorrect response to an HTTP r ...

CVSS3: 4.3
github
больше 4 лет назад

Unsynchronized Access to Shared Data in a Multithreaded Context in RESTEasy

EPSS

Процентиль: 33%
0.00132
Низкий

4.2 Medium

CVSS3