A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projects Axis 1.x Subversion repository, legacy users are encouraged to build from source. The successor to Axis 1.x is Axis2, the latest version is 1.7.9 and is not vulnerable to this issue.
History

Thu, 08 May 2025 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Oracle agile Product Lifecycle Management
CPEs cpe:2.3:a:oracle:agile_product_lifecycle_management_framework:9.3.3:*:*:*:*:*:*:* cpe:2.3:a:oracle:agile_product_lifecycle_management:9.3.3:*:*:*:*:*:*:*
Vendors & Products Oracle agile Product Lifecycle Management Framework
Oracle agile Product Lifecycle Management

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published: 2019-05-01T20:03:49

Updated: 2024-08-04T17:44:15.943Z

Reserved: 2018-11-14T00:00:00

Link: CVE-2019-0227

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-05-01T21:29:00.643

Modified: 2025-05-08T18:13:51.353

Link: CVE-2019-0227

cve-icon Redhat

Severity : Moderate

Publid Date: 2019-04-09T00:00:00Z

Links: CVE-2019-0227 - Bugzilla