Количество 2
Количество 2
CVE-2017-15700
около 8 лет назад
A flaw in the org.apache.sling.auth.core.AuthUtil#isRedirectValid method in Apache Sling Authentication Service 1.4.0 allows an attacker, through the Sling login form, to trick a victim to send over their credentials.
CVSS3: 8.8
EPSS: Низкий
GHSA-vcvp-89fq-hwj8
больше 3 лет назад
Apache Sling Authentication Service vulnerability
CVSS3: 8.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2017-15700 A flaw in the org.apache.sling.auth.core.AuthUtil#isRedirectValid method in Apache Sling Authentication Service 1.4.0 allows an attacker, through the Sling login form, to trick a victim to send over their credentials. | CVSS3: 8.8 | 0% Низкий | около 8 лет назад | |
GHSA-vcvp-89fq-hwj8 Apache Sling Authentication Service vulnerability | CVSS3: 8.8 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20