Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Xiaofeng Lou

#43667de 56,337
6.5CVSS total
Vulnerabilidades · 1
PT-2011-3777
6.5
2011-06-02
Apache · Apache Rampart/C · CVE-2011-2329
**Name of the Vulnerable Software and Affected Versions** Apache Rampart/C version 1.3.0 **Description** The issue is related to the improper calculation of the expiration of timestamp tokens by the `rampart timestamp token validate` function. This allows remote attackers to bypass intended access restrictions by using an expired token. **Recommendations** For Apache Rampart/C version 1.3.0, consider disabling the `rampart timestamp token validate` function until a patch is available to properly calculate the expiration of timestamp tokens.