The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and earlier, as used in JBoss Web Framework Kit, allows remote attackers to bypass the WebRemote annotation restriction and obtain information about arbitrary classes and methods on the server classpath via unspecified vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jboss_seam_2_framework | Redhat | * | 2.3.1 (including) |
Jboss_seam_2_framework | Redhat | 2.0.0-beta1 (including) | 2.0.0-beta1 (including) |
Jboss_seam_2_framework | Redhat | 2.0.0-cr1 (including) | 2.0.0-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.0.0-cr2 (including) | 2.0.0-cr2 (including) |
Jboss_seam_2_framework | Redhat | 2.0.0-cr3 (including) | 2.0.0-cr3 (including) |
Jboss_seam_2_framework | Redhat | 2.0.0-ga (including) | 2.0.0-ga (including) |
Jboss_seam_2_framework | Redhat | 2.0.1-cr1 (including) | 2.0.1-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.0.1-cr2 (including) | 2.0.1-cr2 (including) |
Jboss_seam_2_framework | Redhat | 2.0.1-ga (including) | 2.0.1-ga (including) |
Jboss_seam_2_framework | Redhat | 2.0.2-cr1 (including) | 2.0.2-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.0.2-cr2 (including) | 2.0.2-cr2 (including) |
Jboss_seam_2_framework | Redhat | 2.0.2-ga (including) | 2.0.2-ga (including) |
Jboss_seam_2_framework | Redhat | 2.0.2-sp1 (including) | 2.0.2-sp1 (including) |
Jboss_seam_2_framework | Redhat | 2.0.3-cr1 (including) | 2.0.3-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.0-alpha1 (including) | 2.1.0-alpha1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.0-beta1 (including) | 2.1.0-beta1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.0-cr1 (including) | 2.1.0-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.0-ga (including) | 2.1.0-ga (including) |
Jboss_seam_2_framework | Redhat | 2.1.0-sp1 (including) | 2.1.0-sp1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.1-cr1 (including) | 2.1.1-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.1-cr2 (including) | 2.1.1-cr2 (including) |
Jboss_seam_2_framework | Redhat | 2.1.1-ga (including) | 2.1.1-ga (including) |
Jboss_seam_2_framework | Redhat | 2.1.2 (including) | 2.1.2 (including) |
Jboss_seam_2_framework | Redhat | 2.1.2-cr1 (including) | 2.1.2-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.1.2-cr2 (including) | 2.1.2-cr2 (including) |
Jboss_seam_2_framework | Redhat | 2.2.0-cr1 (including) | 2.2.0-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.2.0-ga (including) | 2.2.0-ga (including) |
Jboss_seam_2_framework | Redhat | 2.2.1 (including) | 2.2.1 (including) |
Jboss_seam_2_framework | Redhat | 2.2.1-cr1 (including) | 2.2.1-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.2.1-cr2 (including) | 2.2.1-cr2 (including) |
Jboss_seam_2_framework | Redhat | 2.2.1-cr3 (including) | 2.2.1-cr3 (including) |
Jboss_seam_2_framework | Redhat | 2.2.2 (including) | 2.2.2 (including) |
Jboss_seam_2_framework | Redhat | 2.3.0 (including) | 2.3.0 (including) |
Jboss_seam_2_framework | Redhat | 2.3.0-alpha (including) | 2.3.0-alpha (including) |
Jboss_seam_2_framework | Redhat | 2.3.0-beta1 (including) | 2.3.0-beta1 (including) |
Jboss_seam_2_framework | Redhat | 2.3.0-beta2 (including) | 2.3.0-beta2 (including) |
Jboss_seam_2_framework | Redhat | 2.3.0-cr1 (including) | 2.3.0-cr1 (including) |
Jboss_seam_2_framework | Redhat | 2.3.1-cr1 (including) | 2.3.1-cr1 (including) |
Red Hat JBoss Web Framework Kit 2.4 | RedHat | Seam | * |