Intelligence View
⚡ tsecurity.de Intelligence
CVE-2016-4464 | Apache CXF Fediz up to 1.2.2/1.3.0 Application Plugin access control (BID-92905 / ID 1036869)
A vulnerability classified as very critical has been found in Apache CXF Fediz up to 1.2.2/1.3.0. Affected is an unknown function of the component Application…
A vulnerability classified as very critical has been found in Apache CXF Fediz up to 1.2.2/1.3.0. Affected is an unknown function of the component Application Plugin. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2016-4464. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
This vulnerability is traded as CVE-2016-4464. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
Advisory Radar
Offizielles Hersteller-Update verfügbar
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller hat ein verifiziertes Patch-Release herausgegeben. Sofortiges Rollout auf Test- und Produktivsystemen empfohlen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Web Referencewww.securitytracker.com
-
Apache Security Advisory Verifiziertapache.org
-
Web Referencewww.securityfocus.com
-
Web Referencewww.openwall.com
-
Apache Security Advisory Verifiziertapache.org