Oracle Mojarra EL Expression Evaluation Security Bypass Vulnerability UPDATED
20 Jul. 2012
Summary
Oracle Mojarra is prone to a security-bypass vulnerability.
Credit:
The original article can be found at: http://www.securityfocus.com/bid/50846
The information has been provided by Alexander Klink and Julian Waelde .
Attackers can exploit this issue to bypass certain security protections and execute arbitrary script code in the browser of an unsuspecting user in the context of an affected application.
Vendor Status:
Vendor as issued an updated vulnerability.