Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-5066

Опубликовано: 13 авг. 2012
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:jboss_community_application_server:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:5.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 31%
0.00387
Низкий

2.1 Low

CVSS2

Дефекты

CWE-255

Связанные уязвимости

ubuntu
почти 14 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

redhat
почти 17 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

debian
почти 14 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials ...

github
около 4 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

EPSS

Процентиль: 31%
0.00387
Низкий

2.1 Low

CVSS2

Дефекты

CWE-255