Description
The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.
Remediation
References
Related Vulnerabilities
WordPress Plugin RokIntroScroller Multiple Vulnerabilities (1.8)
qdPM Multiple Cross-site Scripting (XSS) Vulnerabilities (CVE-2015-3883)
WordPress Plugin Simple:Press Security Bypass and Arbitrary File Upload Vulnerabilities (4.1.2)
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2021-41585)
Envoy Proxy Incomplete Cleanup Vulnerability (CVE-2023-35945)