Lucene search

K
osvGoogleOSV:CVE-2018-14627
HistorySep 04, 2018 - 12:29 p.m.

CVE-2018-14627

2018-09-0412:29:00
Google
osv.dev
10

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

61.5%

The IIOP OpenJDK Subsystem in WildFly before version 14.0.0 does not honour configuration when SSL transport is required. Servers before this version that are configured with the following setting allow clients to create plaintext connections: <transport-config confidentiality=“required” trust-in-target=“supported”/>

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

61.5%