CVE-2019-17091
published 2019-10-02CVE-2019-17091: faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20…
medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20, allows Reflected XSS because a client window field is mishandled.
Affected
41 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mojarra | — | — |
| eclipse | mojarra | >= 2.3.0 < 2.3.10 | 2.3.10 |
| oracle | application_testing_suite | — | — |
| oracle | application_testing_suite | — | — |
| oracle | banking_enterprise_product_manufacturing | — | — |
| oracle | banking_enterprise_product_manufacturing | — | — |
| oracle | communications_diameter_signaling_router | 8.0.0.0 – 8.4.0.5 | — |
| oracle | communications_network_integrity | — | — |
| oracle | communications_network_integrity | — | — |
| oracle | communications_unified_inventory_management | — | — |
| oracle | communications_unified_inventory_management | — | — |
| oracle | enterprise_data_quality | — | — |
| oracle | health_sciences_information_manager | — | — |
| oracle | healthcare_data_repository | — | — |
| oracle | mojarra_javaserver_faces | >= 2.2.0 < 2.2.20 | 2.2.20 |
| oracle | primavera_p6_enterprise_project_portfolio_management | — | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 15.1.0.0 – 15.2.18.7 | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 16.1.0.0 – 16.2.19.0 | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 17.1.0.0 – 17.12.15.0 | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 18.1.0.0 – 18.8.15.0 | — |
| oracle | rapid_planning | — | — |
| oracle | rapid_planning | — | — |
| oracle | retail_advanced_inventory_planning | — | — |
| oracle | retail_advanced_inventory_planning | — | — |
| oracle | retail_assortment_planning | — | — |