mirror of
https://github.com/0xMarcio/cve.git
synced 2026-03-23 21:50:34 +01:00
632 B
632 B
CVE-2012-0803
Description
The WS-SP UsernameToken policy in Apache CXF 2.4.5 and 2.5.1 allows remote attackers to bypass authentication by sending an empty UsernameToken as part of a SOAP request.
POC
Reference
No PoCs from references.