Red Hat JBoss Enterprise Application Platform is vulnerable to privilege escalation vulnerability. The domain controller in EAP will not propagate its administrative RBAC configuration to some slaves. An unauthenticated attacker could gain gain elevated privileges by leveraging failure to propagate administrative RBAC configuration to all slaves.
rhn.redhat.com/errata/RHSA-2016-1838.html
rhn.redhat.com/errata/RHSA-2016-1838.html
rhn.redhat.com/errata/RHSA-2016-1839.html
rhn.redhat.com/errata/RHSA-2016-1839.html
rhn.redhat.com/errata/RHSA-2016-1840.html
rhn.redhat.com/errata/RHSA-2016-1840.html
rhn.redhat.com/errata/RHSA-2016-1841.html
rhn.redhat.com/errata/RHSA-2016-1841.html
access.redhat.com/documentation/en/red-hat-jboss-enterprise-application-platform/?version=7.0/
access.redhat.com/documentation/en/red-hat-jboss-enterprise-application-platform/version-7.0/702-release-notes/
access.redhat.com/errata/RHSA-2017:3454
access.redhat.com/errata/RHSA-2017:3454
access.redhat.com/errata/RHSA-2017:3455
access.redhat.com/errata/RHSA-2017:3455
access.redhat.com/errata/RHSA-2017:3456
access.redhat.com/errata/RHSA-2017:3456
access.redhat.com/errata/RHSA-2017:3458
access.redhat.com/errata/RHSA-2017:3458
access.redhat.com/security/updates/classification/#important
bugzilla.redhat.com/show_bug.cgi?id=1359014
bugzilla.redhat.com/show_bug.cgi?id=1359014
issues.jboss.org/browse/JBEAP-4731
rhn.redhat.com/errata/RHSA-2016-1838.html