Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3927
HistoryApr 19, 2017 - 3:02 a.m.

Spoofed Server Attacks

2017-04-1903:02:14
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.003 Low

EPSS

Percentile

71.3%

cxf-rt-rs-security-xml is vulnerable to server spoofing attacks. The attacks are possible because the XML security clients fail to validate whether the JAX-RS service response is signed or encrypted.

References

0.003 Low

EPSS

Percentile

71.3%