Required CVE Record Information
Description
Open WorkFlow Engine (OpenWFE) 1.4.x allows remote attackers to conduct port scans of remote hosts by specifying the target in an rmi:// Worklist URL, then using the response times to infer the results.
References 4 Total
- securityfocus.com: 11514 vdb-entry
- exchange.xforce.ibmcloud.com: openwfe-rmi-obtain-information(17852) vdb-entry
- secunia.com: 12970 third-party-advisory
- marc.info: 20041024 Two Vulnerabilities in OpenWFE Web Client mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- securityfocus.com: 11514 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: openwfe-rmi-obtain-information(17852) vdb-entryx_transferred
- secunia.com: 12970 third-party-advisoryx_transferred
- marc.info: 20041024 Two Vulnerabilities in OpenWFE Web Client mailing-listx_transferred