CVE-2014-0059
17.11.2014, 22:59
JBoss SX and PicketBox, as used in Red Hat JBoss Enterprise Application Platform (EAP) before 6.2.3, use world-readable permissions on audit.log, which allows local users to obtain sensitive information by reading this file.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | jboss_enterprise_application_platform | 𝑥 ≤ 6.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References