Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Xiaofeng Lou

#43070of 56,334
6.5Total CVSS
Vulnerabilities · 1
PT-2011-3777
6.5
2011-06-02
Apache · Apache Rampart/C · CVE-2011-2329
**Name of the Vulnerable Software and Affected Versions** Apache Rampart/C version 1.3.0 **Description** The issue is related to the improper calculation of the expiration of timestamp tokens by the `rampart timestamp token validate` function. This allows remote attackers to bypass intended access restrictions by using an expired token. **Recommendations** For Apache Rampart/C version 1.3.0, consider disabling the `rampart timestamp token validate` function until a patch is available to properly calculate the expiration of timestamp tokens.