VMware SpringSource Spring Security 2.x before 2.0.6 and 3.x before 3.0.4, and Acegi Security 1.0.0 through 1.0.7, as used in IBM WebSphere Application Server (WAS) 6.1 and 7.0, allows remote attackers to bypass security constraints via a path parameter.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2010-10-29T18:00:00
Updated: 2018-10-10T18:57:01
Reserved: 2010-10-01T00:00:00
Link: CVE-2010-3700
JSON object: View
NVD Information
Status : Modified
Published: 2010-10-29T19:00:02.247
Modified: 2018-10-10T20:05:06.493
Link: CVE-2010-3700
JSON object: View
Redhat Information
No data.
CWE