CVE-2021-3717
24.05.2022, 19:15
A flaw was found in Wildfly. An incorrect JBOSS_LOCAL_USER challenge location when using the elytron configuration may lead to JBOSS_LOCAL_USER access to all users on the machine. The highest threat from this vulnerability is to confidentiality, integrity, and availability. This flaw affects wildfly-core versions prior to 17.0.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | jboss_enterprise_application_platform | - |
redhat | single_sign-on | - |
redhat | wildfly_core | 𝑥 < 17.0 |
redhat | jboss_enterprise_application_platform | 7.4 |
redhat | jboss_enterprise_application_platform | 7.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration