Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24856
HistoryApr 10, 2020 - 1:07 a.m.

Denial Of Service (DoS)

2020-04-1001:07:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.023 Low

EPSS

Percentile

89.7%

jbossweb is vulnerable to denial of service (DoS). The vulnerability exists as a flaw was found in the way JBoss Web handled UTF-8 surrogate pair characters. If JBoss Web was hosting an application with UTF-8 character encoding enabled, or that included user-supplied UTF-8 strings in a response, a remote attacker could use this flaw to cause a denial of service (infinite loop) on the JBoss Web server.

0.023 Low

EPSS

Percentile

89.7%