| CVSS Meta Temp Isilinganiso | Intengo yamanje ye-exploit (≈) | CTI Inzalo Score |
|---|---|---|
| 5.1 | $5k-$25k | 0.00 |
Isifinyezo
Kutholakale ubuthakathaka obubizwa ngokuthi kuyinkinga ku Red Hat Build of Keycloak, JBoss Enterprise Application Platform and Single Sign-On. Kuthinteka umsebenzi $software_function kwe-component Redirect URI Handler. Ukuguqulwa kubangela uhlobo lwe Redirect.
Le buthakathaka ibizwa ngokuthi CVE-2024-8883. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. I-exploit ayitholakali.
Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.
Iinkcukacha
Kutholakale ubuthakathaka obubizwa ngokuthi kuyinkinga ku Red Hat Build of Keycloak, JBoss Enterprise Application Platform and Single Sign-On. Kuthinteka umsebenzi $software_function kwe-component Redirect URI Handler. Ukuguqulwa kubangela uhlobo lwe Redirect. Ukusebenzisa i-CWE ukumemezela inkinga kuholela ku-CWE-601. Lobu buthakathaka bakhishwa obala. Isaziso sitholakala ukuthi singalayishwa ku-access.redhat.com.
Le buthakathaka ibizwa ngokuthi CVE-2024-8883. I-CVE yanikezwa ngo-2024-09-16. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. Akukho mininingwane yezobuchwepheshe etholakalayo. Kunzima kakhulu ukwenza ukuhlasela. Ukuduma kwalobu buthakathi kungaphansi kokujwayelekile. I-exploit ayitholakali. Okwamanje, intengo yamanje ye-exploit ingaba cishe USD $5k-$25k ngalesi sikhathi.
Umphathi wokuhlola ubungozi unikeza i-plugin ye-Nessus enenombolo ye-ID $id_ye_nessus_yomthombo.
Ubuthakathaka lolu lukhona futhi kwamanye ama-database okubuthakathaka: Tenable (210339). Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.
Umkhiqizo
Uhlobo
Umkhiqizi
Ibizo
Ilayisense
Iwebhusayithi
- Umkhiqizi: https://www.redhat.com/
CPE 2.3
CPE 2.2
CVSSv4
VulDB Umkhombandlela: 🔍VulDB Ukuthembeka: 🔍
CVSSv3
VulDB Ireyithingi yeMeta Base: 5.1VulDB Meta Temp Isilinganiso: 5.1
VulDB Isilinganiso Esiyisisekelo: 3.1
VulDB Izinga Lesikhashana: 3.1
VulDB Umkhombandlela: 🔍
VulDB Ukuthembeka: 🔍
NVD Isilinganiso Esiyisisekelo: 6.1
NVD Umkhombandlela: 🔍
CNA Isilinganiso Esiyisisekelo: 6.1
CNA Umkhombandlela (redhat): 🔍
CVSSv2
| AV | AC | Au | C | I | A |
|---|---|---|---|---|---|
| 💳 | 💳 | 💳 | 💳 | 💳 | 💳 |
| 💳 | 💳 | 💳 | 💳 | 💳 | 💳 |
| 💳 | 💳 | 💳 | 💳 | 💳 | 💳 |
| Umkhombandlela | Ubunzima | Ukufakazela ubuwena | Ukuyimfihlo | Ukuthembeka | Ukutholakala |
|---|---|---|---|---|---|
| vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela |
| vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela |
| vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela |
VulDB Isilinganiso Esiyisisekelo: 🔍
VulDB Izinga Lesikhashana: 🔍
VulDB Ukuthembeka: 🔍
Ukusebenzisa ithuba lokungavikeleki
Ikilasi: RedirectCWE: CWE-601
CAPEC: 🔍
ATT&CK: 🔍
Okubambekayo: Hayi
Wendawo: Hayi
Kude: Yebo
Ukutholakala: 🔍
Isimo: Akuchazwanga
EPSS Score: 🔍
EPSS Percentile: 🔍
Ukukhula kwentengo: 🔍
Okwamanje ukuhlolwa kwentengo: 🔍
| 0-Day | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela |
|---|---|---|---|---|
| Namuhla | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela | vula ukufinyelela |
Nessus ID: 210339
Nessus Ibizo: RHEL 8 : Red Hat JBoss Enterprise Application Platform 8.0.4 Security update (Important) (RHSA-2024:8823)
Ulwazi lwezingozi
Intshisekelo: 🔍Abadlali abasebenzayo: 🔍
AmaQembu e-APT asebenzayo: 🔍
Izinyathelo zokuvikela
Isincomo: akukho sithathwa esaziwayoIsimo: 🔍
0-Suku Isikhathi: 🔍
Isikhathi somlando
2024-09-16 🔍2024-09-19 🔍
2024-09-19 🔍
2025-08-31 🔍
Imithombo
Umkhiqizi: redhat.comIseluleko: access.redhat.com
Isimo: Kuqinisekisiwe
CVE: CVE-2024-8883 (🔍)
GCVE (CVE): GCVE-0-2024-8883
GCVE (VulDB): GCVE-100-278169
EUVD: 🔍
Ukungena
Kudalwa: 2024-09-19 18:13Ukuvuselelwa: 2025-08-31 10:53
Ukulungiswa: 2024-09-19 18:13 (61), 2024-09-20 10:45 (1), 2024-10-01 16:33 (16), 2024-11-05 22:06 (2), 2025-03-09 20:08 (3), 2025-08-31 10:53 (1)
Kugcwele: 🔍
Cache ID: 253:F0D:103
Kuze kube manje akukabikho ukuphawula. Izilimi: nr + nd + en.
Ngiyacela ungene ngemvume ukuze ukwazi ukuphawula.