Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0059

Опубликовано: 17 нояб. 2014
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

JBoss SX and PicketBox, as used in Red Hat JBoss Enterprise Application Platform (EAP) before 6.2.3, use world-readable permissions on audit.log, which allows local users to obtain sensitive information by reading this file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:jboss_enterprise_application_platform:*:*:*:*:*:*:*:*
Версия до 6.2.2 (включая)

EPSS

Процентиль: 17%
0.00053
Низкий

2.1 Low

CVSS2

Дефекты

CWE-200

Связанные уязвимости

redhat
больше 11 лет назад

JBoss SX and PicketBox, as used in Red Hat JBoss Enterprise Application Platform (EAP) before 6.2.3, use world-readable permissions on audit.log, which allows local users to obtain sensitive information by reading this file.

github
больше 3 лет назад

JBoss SX and PicketBox, as used in Red Hat JBoss Enterprise Application Platform (EAP) before 6.2.3, use world-readable permissions on audit.log, which allows local users to obtain sensitive information by reading this file.

EPSS

Процентиль: 17%
0.00053
Низкий

2.1 Low

CVSS2

Дефекты

CWE-200