Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-5416

Опубликовано: 20 июн. 2025
Источник: nvd
CVSS3: 2.7
EPSS Низкий

Описание

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:keycloak:-:*:*:*:*:*:*:*

EPSS

Процентиль: 8%
0.00031
Низкий

2.7 Low

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 2.7
redhat
6 месяцев назад

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

CVSS3: 2.7
debian
6 месяцев назад

A vulnerability has been identified in Keycloak that could lead to una ...

CVSS3: 2.7
github
6 месяцев назад

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

EPSS

Процентиль: 8%
0.00031
Низкий

2.7 Low

CVSS3

Дефекты

CWE-497