Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-2171
HistoryApr 11, 2016 - 2:59 p.m.

Design/Logic Flaw

2016-04-1114:59:00
PRIOn knowledge base
www.prio-n.com
2

7.2 High

AI Score

Confidence

Low

0.531 Medium

EPSS

Percentile

97.6%

The User Manager service in Apache Jetspeed before 2.3.1 does not properly restrict access using Jetspeed Security, which allows remote attackers to (1) add, (2) edit, or (3) delete users via the REST API.

CPENameOperatorVersion
jetspeedle2.3.0

7.2 High

AI Score

Confidence

Low

0.531 Medium

EPSS

Percentile

97.6%

Related for PRION:CVE-2016-2171