Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-82v2-f875-73g9

Опубликовано: 24 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 4.9

Описание

Wildfly Authorization Misconfiguration

A flaw was found in wildfly-core before 7.2.5.GA. The Management users with Monitor, Auditor and Deployer Roles should not be allowed to modify the runtime state of the server

Пакеты

Наименование

org.wildfly.core:wildfly-host-controller

maven
Затронутые версииВерсия исправления

< 7.2.5.GA

7.2.5.GA

EPSS

Процентиль: 60%
0.00402
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 5.2
redhat
больше 6 лет назад

A flaw was found in wildfly-core before 7.2.5.GA. The Management users with Monitor, Auditor and Deployer Roles should not be allowed to modify the runtime state of the server

CVSS3: 4.9
nvd
больше 6 лет назад

A flaw was found in wildfly-core before 7.2.5.GA. The Management users with Monitor, Auditor and Deployer Roles should not be allowed to modify the runtime state of the server

CVSS3: 4.9
debian
больше 6 лет назад

A flaw was found in wildfly-core before 7.2.5.GA. The Management users ...

EPSS

Процентиль: 60%
0.00402
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-284