CVE-2017-12165
- EPSS 1.1%
- Published 27.07.2018 15:29:00
- Last modified 21.11.2024 03:08:57
It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.
CVE-2017-2595
- EPSS 1.17%
- Published 27.07.2018 15:29:00
- Last modified 21.11.2024 03:23:47
It was found that the log file viewer in Red Hat JBoss Enterprise Application 6 and 7 allows arbitrary file read to authenticated user via path traversal.
CVE-2017-2670
- EPSS 5.97%
- Published 27.07.2018 15:29:00
- Last modified 21.11.2024 03:23:56
It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.
CVE-2017-2666
- EPSS 2.22%
- Published 27.07.2018 14:29:00
- Last modified 21.11.2024 03:23:56
It was discovered in Undertow that the code that parsed the HTTP request line permitted invalid characters. This could be exploited, in conjunction with a proxy that also permitted the invalid characters but with a different interpretation, to inject...
CVE-2018-10862
- EPSS 0.33%
- Published 27.07.2018 14:29:00
- Last modified 21.11.2024 03:42:10
WildFly Core before version 6.0.0.Alpha3 does not properly validate file paths in .war archives, allowing for the extraction of crafted .war archives to overwrite arbitrary files. This is an instance of the 'Zip Slip' vulnerability.
CVE-2017-7464
- EPSS 0.56%
- Published 27.07.2018 12:29:00
- Last modified 21.11.2024 03:31:57
It was found that the JAXP implementation used in JBoss EAP 7.0 for SAX and DOM parsing is vulnerable to certain XXE flaws. An attacker could use this flaw to cause DoS, SSRF, or information disclosure if they are able to provide XML content for pars...
CVE-2017-12167
- EPSS 0.05%
- Published 26.07.2018 17:29:00
- Last modified 21.11.2024 03:08:58
It was found in EAP 7 before 7.0.9 that properties based files of the management and the application realm configuration that contain user to role mapping are world readable allowing access to users and roles information to all the users logged in to...
CVE-2017-2582
- EPSS 0.66%
- Published 26.07.2018 17:29:00
- Last modified 21.11.2024 03:23:46
It was found that while parsing the SAML messages the StaxParserUtil class of keycloak before 2.5.1 replaces special strings for obtaining attribute values with system property. This could allow an attacker to determine values of system properties at...
CVE-2018-8039
- EPSS 1.91%
- Published 02.07.2018 13:29:00
- Last modified 21.11.2024 04:13:09
It is possible to configure Apache CXF to use the com.sun.net.ssl implementation via 'System.setProperty("java.protocol.handler.pkgs", "com.sun.net.ssl.internal.www.protocol");'. When this system property is set, CXF uses some reflection to try to ma...
CVE-2017-7465
- EPSS 3.68%
- Published 27.06.2018 16:29:00
- Last modified 21.11.2024 03:31:57
It was found that the JAXP implementation used in JBoss EAP 7.0 for XSLT processing is vulnerable to code injection. An attacker could use this flaw to cause remote code execution if they are able to provide XSLT content for parsing. Doing a transfor...