CVE-2012-1094
10.03.2020, 17:15
JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched and the root context to be exposed.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | jboss_application_server | 7.0.0 ≤ 𝑥 < 7.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration