New vulnerability on the NVD: CVE-2009-4267
The Apache jUDDI console in 3.0.0 did not escape line feeds passed in the numRows parameter. This affected log integrity allowing authenticated users to forge log records. This issue was addressed in jUDDI 3.0.1.
Published at: February 19, 2018 at 09:29PM
Published at: February 19, 2018 at 09:29PM
Comments
Post a Comment