Jboss EAP Use of a Broken or Risky Cryptographic Algorithm Vulnerability - CVE-2011-2487 - Vulnerability Database

Jboss EAP Use of a Broken or Risky Cryptographic Algorithm Vulnerability - CVE-2011-2487

Medium
Reference: CVE-2011-2487
Title: Jboss EAP Use of a Broken or Risky Cryptographic Algorithm Vulnerability
Overview:

The implementations of PKCS1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.