CVSS Meta Temp IsilinganisoIntengo yamanje ye-exploit (≈)CTI Inzalo Score
5.1$5k-$25k0.00

Isifinyezoulwazi

Kutholakale ubuthakathaka obubizwa ngokuthi kuyinkinga ku Red Hat Build of Keycloak, JBoss Enterprise Application Platform and Single Sign-On. Kuthinteka umsebenzi $software_function kwe-component Redirect URI Handler. Ukuguqulwa kubangela uhlobo lwe Redirect. Le buthakathaka ibizwa ngokuthi CVE-2024-8883. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. I-exploit ayitholakali. Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.

Iinkcukachaulwazi

Kutholakale ubuthakathaka obubizwa ngokuthi kuyinkinga ku Red Hat Build of Keycloak, JBoss Enterprise Application Platform and Single Sign-On. Kuthinteka umsebenzi $software_function kwe-component Redirect URI Handler. Ukuguqulwa kubangela uhlobo lwe Redirect. Ukusebenzisa i-CWE ukumemezela inkinga kuholela ku-CWE-601. Lobu buthakathaka bakhishwa obala. Isaziso sitholakala ukuthi singalayishwa ku-access.redhat.com.

Le buthakathaka ibizwa ngokuthi CVE-2024-8883. I-CVE yanikezwa ngo-2024-09-16. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. Akukho mininingwane yezobuchwepheshe etholakalayo. Kunzima kakhulu ukwenza ukuhlasela. Ukuduma kwalobu buthakathi kungaphansi kokujwayelekile. I-exploit ayitholakali. Okwamanje, intengo yamanje ye-exploit ingaba cishe USD $5k-$25k ngalesi sikhathi.

Umphathi wokuhlola ubungozi unikeza i-plugin ye-Nessus enenombolo ye-ID $id_ye_nessus_yomthombo.

Ubuthakathaka lolu lukhona futhi kwamanye ama-database okubuthakathaka: Tenable (210339). Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.

Umkhiqizoulwazi

Uhlobo

Umkhiqizi

Ibizo

Ilayisense

Iwebhusayithi

CPE 2.3ulwazi

CPE 2.2ulwazi

CVSSv4ulwazi

VulDB Umkhombandlela: 🔍
VulDB Ukuthembeka: 🔍

CVSSv3ulwazi

VulDB Ireyithingi yeMeta Base: 5.1
VulDB Meta Temp Isilinganiso: 5.1

VulDB Isilinganiso Esiyisisekelo: 3.1
VulDB Izinga Lesikhashana: 3.1
VulDB Umkhombandlela: 🔍
VulDB Ukuthembeka: 🔍

NVD Isilinganiso Esiyisisekelo: 6.1
NVD Umkhombandlela: 🔍

CNA Isilinganiso Esiyisisekelo: 6.1
CNA Umkhombandlela (redhat): 🔍

CVSSv2ulwazi

AVACAuCIA
💳💳💳💳💳💳
💳💳💳💳💳💳
💳💳💳💳💳💳
UmkhombandlelaUbunzimaUkufakazela ubuwenaUkuyimfihloUkuthembekaUkutholakala
vula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelela
vula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelela
vula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelela

VulDB Isilinganiso Esiyisisekelo: 🔍
VulDB Izinga Lesikhashana: 🔍
VulDB Ukuthembeka: 🔍

Ukusebenzisa ithuba lokungavikelekiulwazi

Ikilasi: Redirect
CWE: CWE-601
CAPEC: 🔍
ATT&CK: 🔍

Okubambekayo: Hayi
Wendawo: Hayi
Kude: Yebo

Ukutholakala: 🔍
Isimo: Akuchazwanga

EPSS Score: 🔍
EPSS Percentile: 🔍

Ukukhula kwentengo: 🔍
Okwamanje ukuhlolwa kwentengo: 🔍

0-Dayvula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelela
Namuhlavula ukufinyelelavula ukufinyelelavula ukufinyelelavula ukufinyelela

Nessus ID: 210339
Nessus Ibizo: RHEL 8 : Red Hat JBoss Enterprise Application Platform 8.0.4 Security update (Important) (RHSA-2024:8823)

Ulwazi lwezingoziulwazi

Intshisekelo: 🔍
Abadlali abasebenzayo: 🔍
AmaQembu e-APT asebenzayo: 🔍

Izinyathelo zokuvikelaulwazi

Isincomo: akukho sithathwa esaziwayo
Isimo: 🔍

0-Suku Isikhathi: 🔍

Isikhathi somlandoulwazi

2024-09-16 🔍
2024-09-19 +3 Izinsuku 🔍
2024-09-19 +0 Izinsuku 🔍
2025-08-31 +346 Izinsuku 🔍

Imithomboulwazi

Umkhiqizi: redhat.com

Iseluleko: access.redhat.com
Isimo: Kuqinisekisiwe

CVE: CVE-2024-8883 (🔍)
GCVE (CVE): GCVE-0-2024-8883
GCVE (VulDB): GCVE-100-278169
EUVD: 🔍

Ukungenaulwazi

Kudalwa: 2024-09-19 18:13
Ukuvuselelwa: 2025-08-31 10:53
Ukulungiswa: 2024-09-19 18:13 (61), 2024-09-20 10:45 (1), 2024-10-01 16:33 (16), 2024-11-05 22:06 (2), 2025-03-09 20:08 (3), 2025-08-31 10:53 (1)
Kugcwele: 🔍
Cache ID: 253:F0D:103

Ingxoxo

Kuze kube manje akukabikho ukuphawula. Izilimi: nr + nd + en.

Ngiyacela ungene ngemvume ukuze ukwazi ukuphawula.

Are you interested in using VulDB?

Download the whitepaper to learn more about our service!