Lucene search

K
redhatcveRedhat.comRH:CVE-2016-4437
HistoryJun 07, 2016 - 8:18 a.m.

CVE-2016-4437

2016-06-0708:18:40
redhat.com
access.redhat.com
21

EPSS

0.971

Percentile

99.8%

It was found that Apache Shiro uses a default cipher key for its “remember me” feature. An attacker could use this to devise a malicious request parameter and gain access to unauthorized content.