cpe:/a:redhat:jboss_enterprise_application_platform:4.3.0 CVE-2010-1871 2010-08-05T09:23:09.477-04:00 2017-11-09T21:29:00.323-05:00 6.8 NETWORK MEDIUM NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2010-08-05T13:58:00.000-04:00 SECTRACK 1024253 BUGTRAQ 20130528 CA20130528-01: Security Notice for CA Process Automation (CA PAM) BID 41994 VUPEN ADV-2010-1929 REDHAT RHSA-2010:0564 CONFIRM https://bugzilla.redhat.com/show_bug.cgi?id=615956 CONFIRM https://security.netapp.com/advisory/ntap-20161017-0001/ XF seam-expressions-code-execution(60794) JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, does not properly sanitize inputs for JBoss Expression Language (EL) expressions, which allows remote attackers to execute arbitrary code via a crafted URL. NOTE: this is only a vulnerability when the Java Security Manager is not properly configured.