ZeroHour

CVE-2019-14838

CVSS 3.1
4.9 medium
EPSS
1%p65
Published
()
Modified
Description

A flaw was found in wildfly-core before 7.2.5.GA. The Management users with Monitor, Auditor and Deployer Roles should not be allowed to modify the runtime state of the server

Vendors
redhat
Products
wildfly core, jboss enterprise application platform, single sign-on, data grid
Weakness
CWE-284, CWE-269
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.