Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11654
HistoryJan 15, 2019 - 9:05 a.m.

Information Disclosure

2019-01-1509:05:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.0004 Low

EPSS

Percentile

5.1%

jboss application server is vulnerable to information disclosure. The default configuration for the Command Line Interface created a history file .jboss-cli-history in the user’s home directory with insecure file permissions. This allows a malicious local user to gain information otherwise not accessible to them.

References

0.0004 Low

EPSS

Percentile

5.1%