Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2102

Опубликовано: 16 окт. 2013
Источник: redhat
CVSS2: 3.3

Описание

The default configuration of Red Hat JBoss Portal before 6.1.0 enables the JGroups diagnostics service with no authentication when a JGroups channel is started, which allows remote attackers to obtain sensitive information (diagnostics) by accessing the service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat JBoss Portal 5RequirementsWill not fix
Red Hat JBoss Portal 6RequirementsAffected
Red Hat JBoss Portal Platform 6.1FixedRHSA-2013:143716.10.2013

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=963984Gatein: JGroups configurations enable diagnostics without authentication

3.3 Low

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

The default configuration of Red Hat JBoss Portal before 6.1.0 enables the JGroups diagnostics service with no authentication when a JGroups channel is started, which allows remote attackers to obtain sensitive information (diagnostics) by accessing the service.

github
больше 3 лет назад

The default configuration of Red Hat JBoss Portal before 6.1.0 enables the JGroups diagnostics service with no authentication when a JGroups channel is started, which allows remote attackers to obtain sensitive information (diagnostics) by accessing the service.

3.3 Low

CVSS2