Session Hijacking Vulnerability in Red Hat JBoss EAP 6.1.0

Session Hijacking Vulnerability in Red Hat JBoss EAP 6.1.0

CVE-2013-4213 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:P/A:N

Red Hat JBoss Enterprise Application Platform (EAP) 6.1.0 does not properly cache EJB invocations by the EJB client API, which allows remote attackers to hijack sessions by using an EJB client.

Learn more about our Api Penetration Testing.