Description
The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.
Remediation
References
Related Vulnerabilities
WordPress Plugin BackWPup Cross-Site Scripting (3.0.12)
WordPress Plugin SPNbabble Cross-Site Request Forgery (1.4.1)
phpMyAdmin Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4729)
Joomla! Core 3.x.x Multiple Cross-Site Scripting Vulnerabilities (3.0.0 - 3.8.7)
IBM RTC Cross-site Scripting (XSS) Vulnerability (CVE-2020-4697)