CVE-2016-6812
Summary
| CVE | CVE-2016-6812 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-08-10 16:29:00 UTC |
| Updated | 2023-11-07 02:34:00 UTC |
| Description | The HTTP transport module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 uses FormattedServiceListWriter to provide an HTML page which lists the names and absolute URL addresses of the available service endpoints. The module calculates the base URL using the current HttpServletRequest. The calculated base URL is used by FormattedServiceListWriter to build the service endpoint absolute URLs. If the unexpected matrix parameters have been injected into the request URL then these matrix parameters will find their way back to the client in the services list page which represents an XSS risk to the client. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Cxf | 3.1.0 | All | All | All |
| Application | Apache | Cxf | 3.1.1 | All | All | All |
| Application | Apache | Cxf | 3.1.2 | All | All | All |
| Application | Apache | Cxf | 3.1.3 | All | All | All |
| Application | Apache | Cxf | 3.1.4 | All | All | All |
| Application | Apache | Cxf | 3.1.5 | All | All | All |
| Application | Apache | Cxf | 3.1.6 | All | All | All |
| Application | Apache | Cxf | 3.1.7 | All | All | All |
| Application | Apache | Cxf | 3.1.8 | All | All | All |
| Application | Apache | Cxf | 3.1.0 | All | All | All |
| Application | Apache | Cxf | 3.1.1 | All | All | All |
| Application | Apache | Cxf | 3.1.2 | All | All | All |
| Application | Apache | Cxf | 3.1.3 | All | All | All |
| Application | Apache | Cxf | 3.1.4 | All | All | All |
| Application | Apache | Cxf | 3.1.5 | All | All | All |
| Application | Apache | Cxf | 3.1.6 | All | All | All |
| Application | Apache | Cxf | 3.1.7 | All | All | All |
| Application | Apache | Cxf | 3.1.8 | All | All | All |
| Application | Apache | Cxf | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| [cxf-commits] 20210402 svn commit: r1073270 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2021-22696.txt.asc security-advisories.html | lists.apache.org | ||
| Pony Mail! | MLIST | lists.apache.org | |
| Pony Mail! | MLIST | lists.apache.org | |
| Pony Mail! | MLIST | lists.apache.org | |
| Pony Mail! | lists.apache.org | ||
| [CXF-6216] No output sanitizing in FormattedServiceListWriter - ASF JIRA | CONFIRM | issues.apache.org | Issue Tracking, Vendor Advisory |
| Apache CXF CVE-2016-6812 Cross Site Scripting Vulnerability | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| cxf.apache.org/security-advisories.data/CVE-2016-6812.txt.asc | CONFIRM | cxf.apache.org | Patch, Vendor Advisory |
| Red Hat Customer Portal | REDHAT | access.redhat.com | |
| Pony Mail! | MLIST | lists.apache.org | |
| [cxf-commits] 20210616 svn commit: r1075801 - in /websites/production/cxf/content: cache/main.pageCache index.html security-advisories.data/CVE-2021-30468.txt.asc security-advisories.html | lists.apache.org | ||
| Pony Mail! | lists.apache.org | ||
| Pony Mail! | MLIST | lists.apache.org | |
| Pony Mail! | MLIST | lists.apache.org | |
| Apache CXF Input Validation Flaw in FormattedServiceListWriter() Lets Remote Users Conduct Cross-Site Scripting Attacks - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| Pony Mail! | lists.apache.org | ||
| Pony Mail! | lists.apache.org | ||
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.