A vulnerability was found in Infinispan such that the invokeAccessibly method from the public class ReflectionUtil allows any application class to invoke private methods in any class with Infinispan's privileges. The attacker can use reflection to introduce new, malicious behavior into the application.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
infinispan infinispan |
||
redhat fuse 1.0 |
||
redhat jboss data grid - |
||
redhat jboss enterprise application platform - |
||
redhat openshift application runtimes - |
||
redhat single sign-on - |
||
redhat jboss_enterprise_application_platform 7.2 |
||
netapp active iq unified manager - |