The org.apache.catalina.connector.Response.encodeURL method in Red Hat JBoss Web 7.1.x and earlier, when the tracking mode is set to COOKIE, sends the jsessionid in the URL of the first response of a session, which allows remote attackers to obtain the session id (1) via a man-in-the-middle attack or (2) by reading a log.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
21 Nov 2024, 01:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://ocpsoft.org/support/topic/session-id-is-appended-as-url-path-parameter-in-very-first-request/ - | |
References | () http://rhn.redhat.com/errata/RHSA-2013-0833.html - Vendor Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2013-0834.html - | |
References | () http://rhn.redhat.com/errata/RHSA-2013-0839.html - Vendor Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2013-1437.html - Vendor Advisory | |
References | () https://issues.jboss.org/browse/JBWEB-249 - |
Information
Published : 2013-10-28 21:55
Updated : 2024-11-21 01:43
NVD link : CVE-2012-4529
Mitre link : CVE-2012-4529
CVE.ORG link : CVE-2012-4529
JSON object : View
Products Affected
redhat
- jboss_enterprise_application_platform
- jboss_community_application_server
CWE