CVE-2014-0121
29.12.2017, 22:29
The admin terminal in Hawt.io does not require authentication, which allows remote attackers to execute arbitrary commands via the k parameter.Enginsight
| Vendor | Product | Version |
|---|---|---|
| hawt | hawtio | 𝑥 ≤ 1.2.2 |
| redhat | jboss_fuse | 6.1.0:beta |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References