CVE-2015-3201
EUVD-2015-326708.06.2015, 14:59
Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | thermostat | 𝑥 ≤ 1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References