CVE-2017-2589
26.07.2018, 15:29
It was discovered that the hawtio servlet 1.4 uses a single HttpClient instance to proxy requests with a persistent cookie store (cookies are stored locally and are not passed between the client and the end URL) which means all clients using that proxy are sharing the same cookies.Enginsight
| Vendor | Product | Version |
|---|---|---|
| hawt | hawtio | 1.4.0 |
| redhat | jboss_fuse | 6.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration