CVE-2011-4358: Medium severity glassfish vulnerability
Published Jul 17, 2012
·Updated
Unspecified vulnerability in Oracle GlassFish Enterprise Server 3.0.1 and 3.1.1 allows remote attackers to affect confidentiality and integrity, related to JSF.
Affected Software
2 affected components
Oracle Sun Glassfish Enterprise Server=3.0.1
Oracle Sun Glassfish Enterprise Server=3.1.1
Event History
Jul 17, 2012
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4358?
CVE-2011-4358 is classified as a critical vulnerability affecting confidentiality and integrity.
2
How do I fix CVE-2011-4358?
To fix CVE-2011-4358, upgrade to a fixed version of Oracle GlassFish Enterprise Server, such as 3.1.2 or later.
3
What are the affected versions of Oracle GlassFish for CVE-2011-4358?
CVE-2011-4358 affects Oracle GlassFish Enterprise Server versions 3.0.1 and 3.1.1.
4
What type of attacks can CVE-2011-4358 lead to?
CVE-2011-4358 may allow remote attackers to compromise the confidentiality and integrity of the system.
5
Is there a workaround for CVE-2011-4358?
There is no specific workaround for CVE-2011-4358; the recommended mitigation is to apply the appropriate software update.