Lucene search

K
cvelistRedhatCVELIST:CVE-2015-3244
HistoryJul 16, 2015 - 10:00 a.m.

CVE-2015-3244

2015-07-1610:00:00
redhat
www.cve.org

6.1 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

55.8%

The Portlet Bridge for JavaServer Faces in Red Hat JBoss Portal 6.2.0, when used in portlets with the default resource serving for GenericPortlet, does not properly restrict access to restricted resources, which allows remote attackers to obtain sensitive information via a URL with a modified resource ID.

6.1 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

55.8%

Related for CVELIST:CVE-2015-3244