CVE Vulnerabilities

CVE-2014-0058

Published: Feb 26, 2014 | Modified: Jan 07, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The security audit functionality in Red Hat JBoss Enterprise Application Platform (EAP) 6.x before 6.2.1 logs request parameters in plaintext, which might allow local users to obtain passwords by reading the log files.

Affected Software

Name Vendor Start Version End Version
Jboss_enterprise_application_platform Redhat 6.0.0 (including) 6.0.0 (including)
Jboss_enterprise_application_platform Redhat 6.0.1 (including) 6.0.1 (including)
Jboss_enterprise_application_platform Redhat 6.1.0 (including) 6.1.0 (including)
Jboss_enterprise_application_platform Redhat 6.2.0 (including) 6.2.0 (including)

References