Логотип exploitDog
bind:CVE-2016-2171
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-2171

Количество 2

Количество 2

nvd логотип

CVE-2016-2171

почти 10 лет назад

The User Manager service in Apache Jetspeed before 2.3.1 does not properly restrict access using Jetspeed Security, which allows remote attackers to (1) add, (2) edit, or (3) delete users via the REST API.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-q4gp-393m-x83p

больше 3 лет назад

The User Manager service in Apache Jetspeed before 2.3.1 does not properly restrict access using Jetspeed Security, which allows remote attackers to (1) add, (2) edit, or (3) delete users via the REST API.

CVSS3: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-2171

The User Manager service in Apache Jetspeed before 2.3.1 does not properly restrict access using Jetspeed Security, which allows remote attackers to (1) add, (2) edit, or (3) delete users via the REST API.

CVSS3: 7.5
10%
Средний
почти 10 лет назад
github логотип
GHSA-q4gp-393m-x83p

The User Manager service in Apache Jetspeed before 2.3.1 does not properly restrict access using Jetspeed Security, which allows remote attackers to (1) add, (2) edit, or (3) delete users via the REST API.

CVSS3: 7.5
10%
Средний
больше 3 лет назад

Уязвимостей на страницу