Does CVE-2012-2378 compromise security for Apache CXF Components in JBoss SOA-P 5.1.0?
Issue
Does CVE-2012-2378 compromise security for Apache CXF Components in JBoss SOA-P 5.1.0? Failure for enforcing WS-Security Policy could lead to unsafe storage or transmission of sensitive information.
Environment
- Apache CXF versions 2.4.5 through 2.4.7, 2.5.1 through 2.5.3, and version 2.6.0
- Red Hat JBoss SOA-P 5.1.0
- Red Hat JBoss Enterprise Application Platform [EAP] 6.0.x
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.