First published: Tue Jul 17 2012(Updated: )
Unspecified vulnerability in Oracle GlassFish Enterprise Server 3.0.1 and 3.1.1 allows remote attackers to affect confidentiality and integrity, related to JSF.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle GlassFish Enterprise Server | =3.0.1 | |
Oracle GlassFish Enterprise Server | =3.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4358 is classified as a critical vulnerability affecting confidentiality and integrity.
To fix CVE-2011-4358, upgrade to a fixed version of Oracle GlassFish Enterprise Server, such as 3.1.2 or later.
CVE-2011-4358 affects Oracle GlassFish Enterprise Server versions 3.0.1 and 3.1.1.
CVE-2011-4358 may allow remote attackers to compromise the confidentiality and integrity of the system.
There is no specific workaround for CVE-2011-4358; the recommended mitigation is to apply the appropriate software update.