5
CVSSv2

CVE-2013-6448

Published: 23/01/2014 Updated: 23/01/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and previous versions, as used in JBoss Web Framework Kit, allows remote malicious users to bypass the WebRemote annotation restriction and obtain information about arbitrary classes and methods on the server classpath via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat jboss seam 2 framework 2.3.1

redhat jboss seam 2 framework

redhat jboss seam 2 framework 2.3.0

redhat jboss seam 2 framework 2.0.2

redhat jboss seam 2 framework 2.0.3

redhat jboss seam 2 framework 2.1.0

redhat jboss seam 2 framework 2.2.1

redhat jboss seam 2 framework 2.0.0

redhat jboss seam 2 framework 2.1.1

redhat jboss seam 2 framework 2.1.2

redhat jboss seam 2 framework 2.0.1

redhat jboss seam 2 framework 2.2.0

redhat jboss seam 2 framework 2.2.2

Vendor Advisories

The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 231 and earlier, as used in JBoss Web Framework Kit, allows remote attackers to bypass the WebRemote annotation restriction and obtain information about arbitrary classes and methods on the server classpath via unspecified vectors ...