JBoss AS 7 before 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched and the root context to be exposed.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat jboss application server |