Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:17866
HistoryMay 02, 2019 - 6:09 a.m.

Information Disclosure

2019-05-0206:09:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.005 Low

EPSS

Percentile

77.0%

admin-cli in Red Hat JBoss Enterprise Application Platform is vulnerable to information disclosure. This vulnerability exists due to EAP feature to download server log files that allows logs to be available via GET requests causing cross-origin attacks. An attacker could trigger the user’s browser to request the log files consuming enough resources that normal server functioning could be impaired.

References

0.005 Low

EPSS

Percentile

77.0%