First published: Fri Sep 16 2016(Updated: )
Red Hat JBoss Enterprise Application Platform (EAP) 7, when operating as a reverse-proxy with default buffer sizes, allows remote attackers to cause a denial of service (CPU and disk consumption) via a long URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat JBoss Enterprise Application Platform | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7046 is classified as a moderate severity vulnerability.
To fix CVE-2016-7046, increase the buffer sizes in the JBoss EAP 7 configuration to handle longer URLs appropriately.
CVE-2016-7046 allows remote attackers to execute a denial of service attack through excessive CPU and disk consumption.
CVE-2016-7046 affects Red Hat JBoss Enterprise Application Platform version 7.0.
CVE-2016-7046 is a remote vulnerability that can be exploited by attackers over the network.