This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Redhat First view 2013-07-23
Product Richfaces Last view 2018-11-06
Version 3.2.0 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:redhat:richfaces

Activity : Overall

Related : CVE

  Date Alert Description
9.8 2018-11-06 CVE-2018-14667

The RichFaces Framework 3.X through 3.3.4 is vulnerable to Expression Language (EL) injection via the UserResource resource. A remote, unauthenticated attacker could exploit this to execute arbitrary code using a chain of java serialized objects via org.ajax4jsf.resource.UserResource$UriData.

9.8 2018-06-18 CVE-2018-12533

JBoss RichFaces 3.1.0 through 3.3.4 allows unauthenticated remote attackers to inject expression language (EL) expressions and execute arbitrary Java code via a /DATA/ substring in a path with an org.richfaces.renderkit.html.Paint2DResource$ImageData object, aka RF-14310.

9.8 2018-06-18 CVE-2018-12532

JBoss RichFaces 4.5.3 through 4.5.17 allows unauthenticated remote attackers to inject an arbitrary expression language (EL) variable mapper and execute arbitrary Java code via a MediaOutputResource's resource request, aka RF-14309.

6.8 2015-03-26 CVE-2015-0279

JBoss RichFaces before 4.5.4 allows remote attackers to inject expression language (EL) expressions and execute arbitrary Java code via the do parameter.

7.5 2013-07-23 CVE-2013-2165

ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red Hat JBoss Web Platform through 5.2.0, Red Hat JBoss Enterprise Application Platform through 4.3.0 CP10 and 5.x through 5.2.0, Red Hat JBoss BRMS through 5.3.1, Red Hat JBoss SOA Platform through 4.3.0 CP05 and 5.x through 5.3.1, Red Hat JBoss Portal through 4.3 CP07 and 5.x through 5.2.2, and Red Hat JBoss Operations Network through 2.4.2 and 3.x through 3.1.2 does not restrict the classes for which deserialization methods can be called, which allows remote attackers to execute arbitrary code via crafted serialized data.

CWE : Common Weakness Enumeration

%idName
66% (2) CWE-94 Failure to Control Generation of Code ('Code Injection')
33% (1) CWE-264 Permissions, Privileges, and Access Controls

Snort® IPS/IDS

Date Description
2018-10-18 JBoss Richfaces expression language injection attempt
RuleID : 47829 - Type : SERVER-OTHER - Revision : 1

Nessus® Vulnerability Scanner

id Description
2014-06-28 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2013-1043.nasl - Type: ACT_GATHER_INFO
2013-07-11 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2013-1042.nasl - Type: ACT_GATHER_INFO
2013-07-11 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2013-1044.nasl - Type: ACT_GATHER_INFO