Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-5066

Опубликовано: 01 окт. 2009
Источник: redhat
CVSS2: 2.1
EPSS Низкий

Описание

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat JBoss BRMS 5twiddleAffected
Red Hat JBoss Portal 5twiddleWill not fix
Red Hat JBoss SOA Platform 5twiddleAffected
JBEWP 5 for RHEL 5aopallianceFixedRHSA-2013:019624.01.2013
JBEWP 5 for RHEL 5apache-cxfFixedRHSA-2013:019624.01.2013
JBEWP 5 for RHEL 5bsh2FixedRHSA-2013:019624.01.2013
JBEWP 5 for RHEL 5glassfish-jaxbFixedRHSA-2013:019624.01.2013
JBEWP 5 for RHEL 5google-guiceFixedRHSA-2013:019624.01.2013
JBEWP 5 for RHEL 5hibernate3FixedRHSA-2013:019624.01.2013
JBEWP 5 for RHEL 5hibernate3-annotationsFixedRHSA-2013:019624.01.2013

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=842477JBoss: twiddle.sh accepts credentials as command line arguments, exposing them to other local users via a process listing

EPSS

Процентиль: 22%
0.00072
Низкий

2.1 Low

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

nvd
больше 13 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

debian
больше 13 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials ...

github
больше 3 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

EPSS

Процентиль: 22%
0.00072
Низкий

2.1 Low

CVSS2