Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2329

Опубликовано: 02 июн. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.5

Описание

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

РелизСтатусПримечание
devel

released

1.3.0-1ubuntu3
hardy

DNE

lucid

released

1.3.0-0ubuntu7.1
maverick

released

1.3.0-1ubuntu1.1
natty

released

1.3.0-1ubuntu2.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 71%
0.0069
Низкий

6.5 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

debian
больше 14 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestam ...

github
больше 3 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

EPSS

Процентиль: 71%
0.0069
Низкий

6.5 Medium

CVSS2