Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-3503

Опубликовано: 09 апр. 2021
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

A flaw was found in Wildfly where insufficient RBAC restrictions may lead to expose metrics data. The highest threat from this vulnerability is to the confidentiality.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Data Grid 8wildflyNot affected
Red Hat Decision Manager 7wildflyNot affected
Red Hat Fuse 7wildflyNot affected
Red Hat JBoss Data Grid 7wildflyNot affected
Red Hat JBoss Data Virtualization 6jbossasNot affected
Red Hat JBoss Data Virtualization 6wildflyNot affected
Red Hat JBoss Enterprise Application Platform 5jbossasNot affected
Red Hat JBoss Enterprise Application Platform 6jbossasNot affected
Red Hat JBoss Enterprise Application Platform 7wildflyNot affected
Red Hat JBoss Enterprise Application Platform Expansion PackwildflyNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=1942693wildfly: Insufficient RBAC restrictions to metrics data

EPSS

Процентиль: 55%
0.00324
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
почти 4 года назад

A flaw was found in Wildfly where insufficient RBAC restrictions may lead to expose metrics data. The highest threat from this vulnerability is to the confidentiality.

CVSS3: 4.3
debian
почти 4 года назад

A flaw was found in Wildfly where insufficient RBAC restrictions may l ...

CVSS3: 4.3
github
почти 4 года назад

Metrics exposure in Wildfly

EPSS

Процентиль: 55%
0.00324
Низкий

4.3 Medium

CVSS3