Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-3586
HistoryApr 21, 2015 - 12:00 a.m.

CVE-2014-3586

2015-04-2100:00:00
ubuntu.com
ubuntu.com
13

2.1 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

0.0004 Low

EPSS

Percentile

5.1%

The default configuration for the Command Line Interface in Red Hat
Enterprise Application Platform before 6.4.0 and WildFly (formerly JBoss
Application Server) uses weak permissions for .jboss-cli-history, which
allows local users to obtain sensitive information via unspecified vectors.

2.1 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

0.0004 Low

EPSS

Percentile

5.1%