CVE Vulnerabilities

CVE-2013-1921

Published: Sep 28, 2013 | Modified: Mar 08, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

PicketBox, as used in Red Hat JBoss Enterprise Application Platform before 6.1.1, allows local users to obtain the admin encryption key by reading the Vault data file.

Affected Software

Name Vendor Start Version End Version
Jboss_enterprise_application_platform Redhat * 6.1.0 (including)
Jboss_enterprise_application_platform Redhat 4.2.0 (including) 4.2.0 (including)
Jboss_enterprise_application_platform Redhat 4.3.0 (including) 4.3.0 (including)
Jboss_enterprise_application_platform Redhat 5.0.0 (including) 5.0.0 (including)
Jboss_enterprise_application_platform Redhat 5.0.1 (including) 5.0.1 (including)
Jboss_enterprise_application_platform Redhat 5.1.0 (including) 5.1.0 (including)
Jboss_enterprise_application_platform Redhat 5.1.1 (including) 5.1.1 (including)
Jboss_enterprise_application_platform Redhat 5.1.2 (including) 5.1.2 (including)
Jboss_enterprise_application_platform Redhat 5.2.0 (including) 5.2.0 (including)
Jboss_enterprise_application_platform Redhat 5.2.1 (including) 5.2.1 (including)
Jboss_enterprise_application_platform Redhat 5.2.2 (including) 5.2.2 (including)
Jboss_enterprise_application_platform Redhat 6.0.0 (including) 6.0.0 (including)
Jboss_enterprise_application_platform Redhat 6.0.1 (including) 6.0.1 (including)

References