[jboss-jira] [JBoss JIRA] Commented: (JBWEB-212) CVE-2011-3190 - authentication bypass and information disclosure

Mike Millson (JIRA) jira-events at lists.jboss.org
Fri Sep 16 07:54:26 EDT 2011


    [ https://issues.jboss.org/browse/JBWEB-212?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12628819#comment-12628819 ] 

Mike Millson commented on JBWEB-212:
------------------------------------

Fixed r1835:
http://viewvc.jboss.org/cgi-bin/viewvc.cgi/jbossweb?view=revision&revision=1835

> CVE-2011-3190 - authentication bypass and information disclosure
> ----------------------------------------------------------------
>
>                 Key: JBWEB-212
>                 URL: https://issues.jboss.org/browse/JBWEB-212
>             Project: JBoss Web
>          Issue Type: Bug
>      Security Level: Public(Everyone can see) 
>          Components: Tomcat
>    Affects Versions: JBossWeb-7.0.1.GA 
>            Reporter: Mustafa Musaji
>            Assignee: Mike Millson
>              Labels: jbossweb
>
> Incorporate the fixes by Jean-Frederic Clere here for this CVE https://home.corp.redhat.com/wiki/jboss-web-cve

--
This message is automatically generated by JIRA.
For more information on JIRA, see: http://www.atlassian.com/software/jira

        


More information about the jboss-jira mailing list