Логотип exploitDog
bind:CVE-2012-3370
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-3370

Количество 4

Количество 4

redhat логотип

CVE-2012-3370

около 13 лет назад

The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 returns the credentials of the previous user when a security context is not provided, which allows remote attackers to gain privileges as other users.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2012-3370

около 13 лет назад

The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 returns the credentials of the previous user when a security context is not provided, which allows remote attackers to gain privileges as other users.

CVSS2: 5.8
EPSS: Низкий
debian логотип

CVE-2012-3370

около 13 лет назад

The SecurityAssociation.getCredential method in JBoss Enterprise Appli ...

CVSS2: 5.8
EPSS: Низкий
github логотип

GHSA-jrx8-2cjx-g9mh

больше 3 лет назад

The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 returns the credentials of the previous user when a security context is not provided, which allows remote attackers to gain privileges as other users.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2012-3370

The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 returns the credentials of the previous user when a security context is not provided, which allows remote attackers to gain privileges as other users.

CVSS2: 5.8
2%
Низкий
около 13 лет назад
nvd логотип
CVE-2012-3370

The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 returns the credentials of the previous user when a security context is not provided, which allows remote attackers to gain privileges as other users.

CVSS2: 5.8
2%
Низкий
около 13 лет назад
debian логотип
CVE-2012-3370

The SecurityAssociation.getCredential method in JBoss Enterprise Appli ...

CVSS2: 5.8
2%
Низкий
около 13 лет назад
github логотип
GHSA-jrx8-2cjx-g9mh

The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 returns the credentials of the previous user when a security context is not provided, which allows remote attackers to gain privileges as other users.

2%
Низкий
больше 3 лет назад

Уязвимостей на страницу