Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0093

Опубликовано: 03 апр. 2014
Источник: nvd
CVSS2: 5.8
EPSS Низкий

Описание

Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.2, when using a Java Security Manager (JSM), does not properly apply permissions defined by a policy file, which causes applications to be granted the java.security.AllPermission permission and allows remote attackers to bypass intended access restrictions.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.2.2:*:*:*:*:*:*:*

EPSS

Процентиль: 51%
0.0028
Низкий

5.8 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

redhat
почти 12 лет назад

Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.2, when using a Java Security Manager (JSM), does not properly apply permissions defined by a policy file, which causes applications to be granted the java.security.AllPermission permission and allows remote attackers to bypass intended access restrictions.

github
больше 3 лет назад

Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.2, when using a Java Security Manager (JSM), does not properly apply permissions defined by a policy file, which causes applications to be granted the java.security.AllPermission permission and allows remote attackers to bypass intended access restrictions.

EPSS

Процентиль: 51%
0.0028
Низкий

5.8 Medium

CVSS2

Дефекты

CWE-264