Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Xiaofeng Lou

#40833of 53,635
6.5Total CVSS
Vulnerabilities · 1
PT-2011-3777
6.5
2011-06-02
Apache · Apache Rampart/C · CVE-2011-2329
**Name of the Vulnerable Software and Affected Versions** Apache Rampart/C version 1.3.0 **Description** The issue is related to the improper calculation of the expiration of timestamp tokens by the `rampart timestamp token validate` function. This allows remote attackers to bypass intended access restrictions by using an expired token. **Recommendations** For Apache Rampart/C version 1.3.0, consider disabling the `rampart timestamp token validate` function until a patch is available to properly calculate the expiration of timestamp tokens.