ZeroHour

CVE-2016-5406

CVSS 3.0
8.8 high
EPSS
3%p86
Published
()
Modified
Description

The domain controller in Red Hat JBoss Enterprise Application Platform (EAP) 7.x before 7.0.2 allows remote authenticated users to gain privileges by leveraging failure to propagate administrative RBAC configuration to all slaves.

Vendors
redhat
Products
jboss enterprise application platform
Weakness
CWE-264
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.