CVE-2015-3201
08.06.2015, 14:59
Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | thermostat | 𝑥 ≤ 1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References