Red Hat JBoss Operations Network (JON) before 3.0.1 uses 0777 permissions for the root directory when installing a remote client, which allows local users to read or modify subdirectories and files within the root directory, as demonstrated by obtaining JON credentials.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jboss_operations_network | Redhat | * | 3.0 (including) |
Red Hat JBoss Operations Network 3.0 | RedHat | * |