Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-7061

Опубликовано: 10 сент. 2018
Источник: nvd
CVSS3: 3.5
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

An information disclosure vulnerability was found in JBoss Enterprise Application Platform before 7.0.4. It was discovered that when configuring RBAC and marking information as sensitive, users with a Monitor role are able to view the sensitive information.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:redhat:jboss_enterprise_application_platform:*:*:*:*:*:*:*:*
Версия до 7.0.4 (исключая)

Одно из

cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00591
Низкий

3.5 Low

CVSS3

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200
CWE-200

Связанные уязвимости

CVSS3: 3.5
redhat
больше 9 лет назад

An information disclosure vulnerability was found in JBoss Enterprise Application Platform before 7.0.4. It was discovered that when configuring RBAC and marking information as sensitive, users with a Monitor role are able to view the sensitive information.

CVSS3: 6.5
github
больше 3 лет назад

An information disclosure vulnerability was found in JBoss Enterprise Application Platform before 7.0.4. It was discovered that when configuring RBAC and marking information as sensitive, users with a Monitor role are able to view the sensitive information.

EPSS

Процентиль: 69%
0.00591
Низкий

3.5 Low

CVSS3

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200
CWE-200