Vulnerabilities > Apache > CXF > 3.2.0

DATE CVE VULNERABILITY TITLE RISK
2018-07-02 CVE-2018-8039 Improper Handling of Exceptional Conditions vulnerability in multiple products
It is possible to configure Apache CXF to use the com.sun.net.ssl implementation via 'System.setProperty("java.protocol.handler.pkgs", "com.sun.net.ssl.internal.www.protocol");'.
network
high complexity
apache redhat CWE-755
8.1
2017-11-14 CVE-2017-12624 Unspecified vulnerability in Apache CXF
Apache CXF supports sending and receiving attachments via either the JAX-WS or JAX-RS specifications.
local
low complexity
apache
5.5