Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-1278

Опубликовано: 08 апр. 2022
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain.

A flaw was found in WildFly. This flaw allows an attacker to see deployment names, endpoints, and any other data the trace payload may contain.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
A-MQ Clients 2WildFlyNot affected
Red Hat A-MQ OnlineWildFlyNot affected
Red Hat build of Apicurio Registry 2WildFlyNot affected
Red Hat build of Debezium 1WildFlyNot affected
Red Hat build of QuarkusWildFlyNot affected
Red Hat Data Grid 8WildFlyFix deferred
Red Hat Decision Manager 7WildFlyFix deferred
Red Hat Fuse 7WildFlyFix deferred
Red Hat Integration Camel K 1WildFlyFix deferred
Red Hat Integration Camel Quarkus 1WildFlyFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-1188
https://bugzilla.redhat.com/show_bug.cgi?id=2073401WildFly: possible information disclosure

EPSS

Процентиль: 75%
0.00883
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
больше 3 лет назад

A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain.

CVSS3: 7.5
debian
больше 3 лет назад

A flaw was found in WildFly, where an attacker can see deployment name ...

CVSS3: 7.5
github
больше 3 лет назад

WildFly vulnerable to Insecure Default Initialization of Resource

EPSS

Процентиль: 75%
0.00883
Низкий

7.5 High

CVSS3