Red Hat JBoss Fuse before 6.2.0 allows remote authenticated users to bypass intended restrictions and access the HawtIO console by leveraging an account defined in the users.properties file.
References
Configurations
History
21 Nov 2024, 02:18
Type | Values Removed | Values Added |
---|---|---|
References | () http://rhn.redhat.com/errata/RHSA-2015-1176.html - | |
References | () http://rhn.redhat.com/errata/RHSA-2015-1177.html - |
Information
Published : 2015-07-08 15:59
Updated : 2024-11-21 02:18
NVD link : CVE-2014-8175
Mitre link : CVE-2014-8175
CVE.ORG link : CVE-2014-8175
JSON object : View
Products Affected
redhat
- jboss_fuse
CWE
CWE-264
Permissions, Privileges, and Access Controls