JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched and the root context to be exposed.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-1860 | JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched and the root context to be exposed. |
![]() |
GHSA-wq8g-hm94-5rqq | JBoss AS may expose root content if excluded-contexts list is mismatched |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T18:45:27.400Z
Reserved: 2012-02-14T00:00:00
Link: CVE-2012-1094

No data.

Status : Modified
Published: 2020-03-10T17:15:12.487
Modified: 2024-11-21T01:36:24.403
Link: CVE-2012-1094


No data.