Information disclosure vulnerability in Apache MyFaces Core 2.0.1 up to and including 2.0.10 and 2.1.0 up to and including 2.1.4 allows remote malicious users to inject EL expressions via crafted parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache myfaces 2.0.1 |
||
apache myfaces 2.1.3 |
||
apache myfaces 2.1.4 |
||
apache myfaces 2.0.4 |
||
apache myfaces 2.1.0 |
||
apache myfaces 2.0.7 |
||
apache myfaces 2.0.8 |
||
apache myfaces 2.1.1 |
||
apache myfaces 2.1.2 |
||
apache myfaces 2.0.9 |
||
apache myfaces 2.0.10 |
||
apache myfaces 2.0.2 |
||
apache myfaces 2.0.3 |
||
apache myfaces 2.0.5 |
||
apache myfaces 2.0.6 |