CVE-2015-0201
CVSS v2.0
5 (Medium)
EPSS
0.32 % (71th)
Affected Products
2
Advisories
1
The Java SockJS client in Pivotal Spring Framework 4.1.x before 4.1.5 generates predictable session ids, which allows remote attackers to send messages to other sessions via unspecified vectors.
Weaknesses
- CWE-254
- 7PK - Security Features
- CVE Status
- PUBLISHED
- CNA
- Red Hat, Inc.
- Published Date
-
2015-03-10 14:59:04
(9 years ago) - Updated Date
-
2022-04-11 17:18:31
(2 years ago)
Affected Products
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...