CVE-2012-2672

EPSS 0.06%
發布日:2012/6/17修改日:2026/4/28
也稱為:DEBIAN-CVE-2012-2672

描述

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

受影響套件(1)

參考連結(1)