Known Vulnerabilities for Axis2 by Apache
Listed below are 7 of the newest known vulnerabilities associated with "Axis2" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-59793 json | Rocket TRUfusion Enterprise through 7.10.5 exposes the endpoint at /axis2/services/WsPortalV6UpDwAxis2Impl to authenticated u... | Not Provided | 2026-02-17 | 2026-03-11 |
| CVE-2020-0822 json | An elevation of privilege vulnerability exists when the Windows Language Pack Installer improperly handles file operations, a... | 7.8 - HIGH | 2020-03-12 | 2021-11-29 |
| CVE-2012-5785 json | Apache Axis2/Java 1.6.2 and earlier does not verify that the server hostname matches a domain name in the subject's Common Na... | 5.8 - MEDIUM | 2012-11-04 | 2017-08-29 |
| CVE-2012-5351 json | Apache Axis2 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature ... | 6.4 - MEDIUM | 2012-10-09 | 2022-04-20 |
| CVE-2012-4418 json | Apache Axis2 allows remote attackers to forge messages and bypass authentication via an "XML Signature wrapping attack." | 5.8 - MEDIUM | 2012-10-09 | 2013-01-30 |
| CVE-2010-2103 json | Cross-site scripting (XSS) vulnerability in axis2-admin/axis2-admin/engagingglobally in the administration console in Apache ... | 4.3 - MEDIUM | 2010-05-27 | 2018-10-10 |
| CVE-2010-1632 json | Apache Axis2 before 1.5.2, as used in IBM WebSphere Application Server (WAS) 7.0 through 7.0.0.12, IBM Feature Pack for Web S... | 7.5 - HIGH | 2010-06-22 | 2017-07-30 |
| CVE-2010-0219 json | Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has... | 10 - HIGH | 2010-10-18 | 2018-10-10 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Axis2 | 1.6.2 | |||
| Application | Apache | Axis2 | 1.6.1 | |||
| Application | Apache | Axis2 | 1.6 | |||
| Application | Apache | Axis2 | 1.5.6 | |||
| Application | Apache | Axis2 | 1.5.5 | |||
| Application | Apache | Axis2 | 1.5.4 | |||
| Application | Apache | Axis2 | 1.5.3 | |||
| Application | Apache | Axis2 | 1.5.2 | |||
| Application | Apache | Axis2 | 1.5.1 | |||
| Application | Apache | Axis2 | 1.5 | |||
| Application | Apache | Axis2 | 1.4.1 | |||
| Application | Apache | Axis2 | 1.4 | |||
| Application | Apache | Axis2 | 1.3 | |||
| Application | Apache | Axis2 | - |