Description
Red Hat JBoss EAP version 3.0.7 through before 4.0.0.Beta1 is vulnerable to a server-side cache poisoning or CORS requests in the JAX-RS component resulting in a moderate impact.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2523 | Red Hat JBoss EAP version 3.0.7 through before 4.0.0.Beta1 is vulnerable to a server-side cache poisoning or CORS requests in the JAX-RS component resulting in a moderate impact. |
Github GHSA |
GHSA-57q5-x8jf-g7h8 | Inconsistent Interpretation of HTTP Requests in Red Hat JBoss EAP |
References
History
Fri, 23 Aug 2024 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:jboss_enterprise_application_platform:7.1::el7 |
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-09-16T22:35:06.807Z
Reserved: 2017-04-05T00:00:00.000Z
Link: CVE-2017-7561
No data.
Status : Modified
Published: 2017-09-13T17:29:00.947
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-7561
OpenCVE Enrichment
No data.
EUVD
Github GHSA