Open mend-bolt-for-github[bot] opened 2 years ago
Path to dependency file: /pom.xml
Path to vulnerable library: /s/axis/1.2/axis-1.2.jar
Dependency Hierarchy: - :x: **axis-1.2.jar** (Vulnerable Library)
Found in HEAD commit: c42e663814e4b88294ff90339ad577ca1afcf531
Found in base branch: master
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.
Publish Date: 2018-08-02
URL: CVE-2018-8032
Base Score Metrics: - Exploitability Metrics: - Attack Vector: Network - Attack Complexity: Low - Privileges Required: None - User Interaction: Required - Scope: Changed - Impact Metrics: - Confidentiality Impact: Low - Integrity Impact: Low - Availability Impact: None
Step up your Open Source Security Game with Mend here
CVE-2018-8032 - Medium Severity Vulnerability
Path to dependency file: /pom.xml
Path to vulnerable library: /s/axis/1.2/axis-1.2.jar
Dependency Hierarchy: - :x: **axis-1.2.jar** (Vulnerable Library)
Found in HEAD commit: c42e663814e4b88294ff90339ad577ca1afcf531
Found in base branch: master
Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.
Publish Date: 2018-08-02
URL: CVE-2018-8032
Base Score Metrics: - Exploitability Metrics: - Attack Vector: Network - Attack Complexity: Low - Privileges Required: None - User Interaction: Required - Scope: Changed - Impact Metrics: - Confidentiality Impact: Low - Integrity Impact: Low - Availability Impact: None
For more information on CVSS3 Scores, click here.Step up your Open Source Security Game with Mend here