CVE-2013-6448

EUVD-2013-6255
The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and earlier, as used in JBoss Web Framework Kit, allows remote attackers to bypass the WebRemote annotation restriction and obtain information about arbitrary classes and methods on the server classpath via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 49%
Affected Products (NVD)
VendorProductVersion
redhatjboss_seam_2_framework
𝑥
≤ 2.3.1
redhatjboss_seam_2_framework
2.0.0:beta1
redhatjboss_seam_2_framework
2.0.0:cr1
redhatjboss_seam_2_framework
2.0.0:cr2
redhatjboss_seam_2_framework
2.0.0:cr3
redhatjboss_seam_2_framework
2.0.0:ga
redhatjboss_seam_2_framework
2.0.1:cr1
redhatjboss_seam_2_framework
2.0.1:cr2
redhatjboss_seam_2_framework
2.0.1:ga
redhatjboss_seam_2_framework
2.0.2:cr1
redhatjboss_seam_2_framework
2.0.2:cr2
redhatjboss_seam_2_framework
2.0.2:ga
redhatjboss_seam_2_framework
2.0.2:sp1
redhatjboss_seam_2_framework
2.0.3:cr1
redhatjboss_seam_2_framework
2.1.0:alpha1
redhatjboss_seam_2_framework
2.1.0:beta1
redhatjboss_seam_2_framework
2.1.0:cr1
redhatjboss_seam_2_framework
2.1.0:ga
redhatjboss_seam_2_framework
2.1.0:sp1
redhatjboss_seam_2_framework
2.1.1:cr1
redhatjboss_seam_2_framework
2.1.1:cr2
redhatjboss_seam_2_framework
2.1.1:ga
redhatjboss_seam_2_framework
2.1.2
redhatjboss_seam_2_framework
2.1.2:cr1
redhatjboss_seam_2_framework
2.1.2:cr2
redhatjboss_seam_2_framework
2.2.0:cr1
redhatjboss_seam_2_framework
2.2.0:ga
redhatjboss_seam_2_framework
2.2.1
redhatjboss_seam_2_framework
2.2.1:cr1
redhatjboss_seam_2_framework
2.2.1:cr2
redhatjboss_seam_2_framework
2.2.1:cr3
redhatjboss_seam_2_framework
2.2.2
redhatjboss_seam_2_framework
2.3.0
redhatjboss_seam_2_framework
2.3.0:alpha
redhatjboss_seam_2_framework
2.3.0:beta1
redhatjboss_seam_2_framework
2.3.0:beta2
redhatjboss_seam_2_framework
2.3.0:cr1
redhatjboss_seam_2_framework
2.3.1:cr1
𝑥
= Vulnerable software versions
Common Weakness Enumeration