Eclipse Mojarra 2.3.7

CPE Details

Eclipse Mojarra 2.3.7
2.3.7
2018-09-17
11h57 +00:00
2018-09-17
11h57 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:eclipse:mojarra:2.3.7:*:*:*:*:*:*:*

Informations

Vendor

eclipse

Product

mojarra

Version

2.3.7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-6950 2021-06-02 13h49 +00:00 Directory traversal in Eclipse Mojarra before 2.3.14 allows attackers to read arbitrary files via the loc parameter or con parameter.
6.5
Medium
CVE-2019-17091 2019-10-02 11h58 +00:00 faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20, allows Reflected XSS because a client window field is mishandled.
6.1
Medium