(Open JDK 11.0.9 ) CVE Description: This vulnerability applies to Java deployments that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security.
No action Required: These vulnerabilities do not affect FNMEA since it's a pure on-prem product (with no connections to the internet).
(Wildfly 20.0.1) NVD - CVE-2021-20250 :
“ Wildfly in versions before 23.0.2.Final while creating a new role in domain mode via the admin console, it is possible to add a payload in the name field, leading to XSS. This affects Confidentiality and Integrity” – Medium & Low
No action Required: This will not be an impact on the product since we don't have internet access externally from the wildfly server. The solution is a pure on-premise one.
Open SSL Library :
FNMEA 2021 R1 uses OpenSSL 1.1.0 which comes with Wild fly 20.0.1. The FNMEA engineering team will look for any open-source library vulnerabilities.
JavaService Library:
FNMEA 2021 uses JavaService 2.0.9 (Windows NT Service Daemon for Java applications). The FNMEA engineering team will watch out for this space if this library is completely out of support from the community.
Related Articles
FlexNet Manager for Engineering Applications 2023 R1 & 2023 R2 Service Pack update (CVE-2023-50164) 5Number of Views FlexNet Manager for Engineering Applications redirecting to HTTPS and inaccessible after applying 2022 R1 SP1 5Number of Views Error "java.lang.NullPointerException" when opening FlexNet Manager for Engineering Applications Report Designer 8Number of Views FlexNet Manager for Engineering Applications version 2023 R1 Usage Summary/PUD report values not accurate 5Number of Views Change the RAM/heap size for FlexNet Manager for Engineering Applications 23Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Case id: 00001065
Activity: Status change: 2 hours ago