Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
message/ax/AxMessage.java in OpenID4Java before 0.9.6 final, as used in JBoss Enterprise Application Platform 5.1 before 5.1.2, Step2, Kay Framework before 1.0.2, and possibly other products does not verify that Attribute Exchange (AX) information is signed, which allows remote attackers to modify potentially sensitive AX information without detection via a man-in-the-middle (MITM) attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Red Hat ‘JBoss Enterprise Web Platform’ 安全漏洞
Vulnerability Description
Red Hat是美国红帽(Red Hat)公司的开源Linux操作系统。 Red Hat的JBoss Enterprise Web Platform中存在漏洞。恶意人员可利用该漏洞操纵某些数据。
CVSS Information
N/A
Vulnerability Type
N/A