Логотип exploitDog
bind:CVE-2020-25711
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-25711

Количество 3

Количество 3

redhat логотип

CVE-2020-25711

около 5 лет назад

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2020-25711

около 5 лет назад

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-8674-26jc-wh98

почти 4 года назад

Improper Access Control in infinispan-server-runtime

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-25711

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 5.9
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-25711

A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

CVSS3: 6.5
0%
Низкий
около 5 лет назад
github логотип
GHSA-8674-26jc-wh98

Improper Access Control in infinispan-server-runtime

CVSS3: 6.5
0%
Низкий
почти 4 года назад

Уязвимостей на страницу