CVE-2016-7061
—CVSS 3.0
6.5 medium
EPSS
2%p77
Published
()
Modified
Description
An information disclosure vulnerability was found in JBoss Enterprise Application Platform before 7.0.4. It was discovered that when configuring RBAC and marking information as sensitive, users with a Monitor role are able to view the sensitive information.
- Vendors
- redhat
- Products
- jboss enterprise application platform
- Weakness
- CWE-200
- Vector
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.