ZeroHour

CVE-2021-20250

CVSS 3.1
4.3 medium
EPSS
<1%p53
Published
()
Modified
Description

A flaw was found in wildfly. The JBoss EJB client has publicly accessible privileged actions which may lead to information disclosure on the server it is deployed on. The highest threat from this vulnerability is to data confidentiality.

Vendors
redhat
Products
jboss-ejb-client, jboss enterprise application platform expansion pack
Weakness
CWE-200
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.