Vulnerabilities
Vulnerable Software
Redhat:  >> Keycloak  >> 11.0.0  Security Vulnerabilities
A vulnerability was found in keycloak, where path traversal using URL-encoded path segments in the request is possible because the resources endpoint applies a transformation of the url path to the file path. Only few specific folder hierarchies can be exposed by this flaw
CVSS Score
6.8
EPSS Score
0.004
Published
2020-11-09
A vulnerability was found in Keycloak before 11.0.1 where DoS attack is possible by sending twenty requests simultaneously to the specified keycloak server, all with a Content-Length header value that exceeds the actual byte count of the request body.
CVSS Score
7.5
EPSS Score
0.005
Published
2020-09-16


Contact Us

Shodan ® - All rights reserved