Red Hat JBoss EAP version 3.0.7 through before 4.0.0.Beta1 is vulnerable to a server-side cache poisoning or CORS requests in the JAX-RS component resulting in a moderate impact.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-09-13 10:29
Updated : 2019-10-02 17:03
NVD link : CVE-2017-7561
Mitre link : CVE-2017-7561
JSON object : View
CWE
CWE-444
Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
Products Affected
redhat
- jboss_enterprise_application_platform