CVE Vulnerabilities

CVE-2014-8115

Published: Feb 20, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
5.5 MODERATE
AV:N/AC:L/Au:S/C:P/I:P/A:N
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The default authorization constrains in KIE Workbench 6.0.x allows remote authenticated users to read or write to arbitrary files, bypass intended access restrictions, and possibly have other unspecified impact via unknown vectors.

Affected Software

NameVendorStart VersionEnd Version
Kie_workbenchRedhat6.0.0 (including)6.0.0 (including)
Kie_workbenchRedhat6.0.1 (including)6.0.1 (including)
Red Hat JBoss BPMS 6.0RedHatkie-workbench*
Red Hat JBoss BRMS 6.0RedHatkie-workbench*

References