CVE-2021-3859

A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows an attacker to carry out denial of service attacks.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.4:*:*:*:*:*:*:*
cpe:2.3:a:redhat:undertow:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:single_sign-on:7.5.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:single_sign-on:7.4.10:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:cloud_secure_agent:-:*:*:*:*:*:*:*

Information

Published : 2022-08-26 09:15

Updated : 2022-12-12 18:25


NVD link : CVE-2021-3859

Mitre link : CVE-2021-3859


JSON object : View

CWE
CWE-214

Invocation of Process Using Visible Sensitive Information

Advertisement

dedicated server usa

Products Affected

redhat

  • undertow
  • jboss_enterprise_application_platform
  • single_sign-on

netapp

  • oncommand_insight
  • cloud_secure_agent
  • oncommand_workflow_automation