Логотип exploitDog
bind:CVE-2010-2086
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-2086

Количество 3

Количество 3

redhat логотип

CVE-2010-2086

около 16 лет назад

Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2010-2086

больше 15 лет назад

Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.

CVSS2: 4
EPSS: Низкий
github логотип

GHSA-92cv-wv2c-8899

больше 3 лет назад

Apache MyFaces Cross-site Scripting vulnerability

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2010-2086

Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.

CVSS2: 5.8
3%
Низкий
около 16 лет назад
nvd логотип
CVE-2010-2086

Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.

CVSS2: 4
3%
Низкий
больше 15 лет назад
github логотип
GHSA-92cv-wv2c-8899

Apache MyFaces Cross-site Scripting vulnerability

3%
Низкий
больше 3 лет назад

Уязвимостей на страницу