SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Apache Shiro Cookie Deserialize Remote Code Execution

Category: WEB-ATTACKS      

Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbitrary code or bypass intended access restrictions.


Relevant Information