Vulnerabilities
Vulnerable Software
Apache:  >> Shiro  >> 1.2.5  Security Vulnerabilities
Apache Shiro before 1.5.3, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass.
CVSS Score
9.8
EPSS Score
0.77
Published
2020-06-22
Apache Shiro before 1.5.2, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass.
CVSS Score
9.8
EPSS Score
0.861
Published
2020-03-25
Apache Shiro before 1.4.2, when using the default "remember me" configuration, cookies could be susceptible to a padding attack.
CVSS Score
7.5
EPSS Score
0.66
Published
2019-11-18


Contact Us

Shodan ® - All rights reserved