ZeroHour

CVE-2023-4503

CVSS 3.1
7.5 high
EPSS
<1%p52
Published
()
Modified
Description

An improper initialization vulnerability was found in Galleon. When using Galleon to provision custom EAP or EAP-XP servers, the servers are created unsecured. This issue could allow an attacker to access remote HTTP services available from the server.

Vendors
redhat
Products
jboss enterprise application platform, jboss enterprise application platform expansion pack
Weakness
CWE-665
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.