Feed/CVE-2012-2672
CVE-2012-2672LOWCVSS 2.1

CVE-2012-2672

Published Jun 16, 2012·Updated Jun 16, 2026

NVD Description

Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by calling the FacesContext.getCurrentInstance function.

CVSS Vector

AV:L/AC:L/Au:N/C:P/I:N/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free