VYPR
Medium severity5.3NVD Advisory· Published Sep 16, 2020· Updated Jun 17, 2026

CVE-2020-1710

CVE-2020-1710

Description

The issue appears to be that JBoss EAP 6.4.21 does not parse the field-name in accordance to RFC7230[1] as it returns a 200 instead of a 400.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

11
  • Red Hat/DataGrid2 versions
    cpe:2.3:a:redhat:jboss_data_grid:-:*:*:*:text-only:*:*:*+ 1 more
    • cpe:2.3:a:redhat:jboss_data_grid:-:*:*:*:text-only:*:*:*
    • cpe:2.3:a:redhat:jboss_data_grid:7.0.0:*:*:*:*:*:*:*
  • cpe:2.3:a:redhat:jboss_enterprise_application_platform:-:*:*:*:text-only:*:*:*+ 4 more
    • cpe:2.3:a:redhat:jboss_enterprise_application_platform:-:*:*:*:text-only:*:*:*
    • cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.4.21:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.3.0:*:*:*:*:*:*:*
  • cpe:2.3:a:redhat:openshift_application_runtimes:-:*:*:*:*:*:*:*
  • cpe:2.3:a:redhat:single_sign-on:-:*:*:*:text-only:*:*:*
  • JBoss/EAPdescription
  • JBoss/EAPllm-fuzzy
    Range: 6.4.21

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.