Risk Scores
CVSS v3.1
5.900000095367432
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.49%
65.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Maven | org.apache.wss4j:wss4j | 0, 0, 0 |
| Red Hat | JBossWS | unknown, unknown, unknown |
| Maven | wss4j:wss4j | 0, 0, 0 |
| Maven | org.apache.ws.security:wss4j | 0, 0, 0 |
| Apache | WSS4J | before 1.6.5, before 1.6.5, before 1.6.5 |
Timeline
- Mar 11, 2020 CVE Published
- Mar 18, 2020 CVE Updated
- Feb 4, 2022 EPSS Score
- Mar 28, 2022 EPSS Score
- May 19, 2022 EPSS Score
- Jul 10, 2022 EPSS Score
- Sep 1, 2022 EPSS Score
- Oct 23, 2022 EPSS Score
- Dec 14, 2022 EPSS Score
- Feb 4, 2023 EPSS Score
- Mar 28, 2023 EPSS Score
- May 19, 2023 EPSS Score
References
- https://bugzilla.redhat.com/show_bug.cgi?id=713539 url
- https://www.nds.ruhr-uni-bochum.de/research/publications/breaking-xml-encryption-pkcs15/ url
- http://cxf.apache.org/note-on-cve-2011-2487.html url
- http://rhn.redhat.com/errata/RHSA-2013-0191.html url
- http://rhn.redhat.com/errata/RHSA-2013-0192.html url
- http://rhn.redhat.com/errata/RHSA-2013-0193.html url
- http://rhn.redhat.com/errata/RHSA-2013-0194.html url
- http://rhn.redhat.com/errata/RHSA-2013-0195.html url
- http://rhn.redhat.com/errata/RHSA-2013-0196.html url
- http://rhn.redhat.com/errata/RHSA-2013-0198.html url
- http://rhn.redhat.com/errata/RHSA-2013-0221.html url
- http://www.securityfocus.com/bid/57549 url
- https://exchange.xforce.ibmcloud.com/vulnerabilities/81737 url
- [cxf-commits] 20200319 svn commit: r1058035 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2019-17573.txt.asc security-advisories.html mailing-list
- [cxf-commits] 20200401 svn commit: r1058573 - in /websites/production/cxf/content: cache/main.pageCache index.html security-advisories.data/CVE-2020-1954.txt.asc security-advisories.html mailing-list
- [cxf-commits] 20201112 svn commit: r1067927 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2020-13954.txt.asc security-advisories.html mailing-list
- [cxf-commits] 20210402 svn commit: r1073270 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2021-22696.txt.asc security-advisories.html mailing-list
- [cxf-commits] 20210616 svn commit: r1075801 - in /websites/production/cxf/content: cache/main.pageCache index.html security-advisories.data/CVE-2021-30468.txt.asc security-advisories.html mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2011-2487 advisory
- https://github.com/advisories/GHSA-4qqf-hmv6-r6wh advisory
…and 19 more