Search CVE reports


Toggle filters

21 – 21 of 21 results


CVE-2016-4437

High priority

Some fixes available 1 of 5

Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbitrary code or bypass intended access restrictions via an unspecified request parameter.

1 affected package

shiro

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
shiro Not affected Not affected Not affected Not affected
Show less packages