6
CVSSv2

CVE-2017-2589

Published: 26/07/2018 Updated: 09/10/2019
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
CVSS v3 Base Score: 9 | Impact Score: 6 | Exploitability Score: 2.3
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

It exists that the hawtio servlet 1.4 uses a single HttpClient instance to proxy requests with a persistent cookie store (cookies are stored locally and are not passed between the client and the end URL) which means all clients using that proxy are sharing the same cookies.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hawt hawtio 1.4.0

redhat jboss fuse 6.3