Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-5066

Опубликовано: 13 авг. 2012
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:jboss_community_application_server:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:5.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 22%
0.00072
Низкий

2.1 Low

CVSS2

Дефекты

CWE-255

Связанные уязвимости

ubuntu
больше 13 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

redhat
около 16 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

debian
больше 13 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials ...

github
больше 3 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

EPSS

Процентиль: 22%
0.00072
Низкий

2.1 Low

CVSS2

Дефекты

CWE-255