ZeroHour

CVE-2020-25640

CVSS 3.1
5.3 medium
EPSS
1%p70
Published
()
Modified
Description

A flaw was discovered in WildFly before 21.0.0.Final where, Resource adapter logs plain text JMS password at warning level on connection error, inserting sensitive information in the log file.

Vendors
redhat
Products
wildfly
Weakness
CWE-209, CWE-532
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.