CVE Database
/

CVE-2014-0093

Back to search

CVE-2014-0093

Published: Apr 3, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.2, when using a Java Security Manager (JSM), does not properly apply permissions defined by a policy file, which causes applications to be granted the java.security.AllPermission permission and allows remote attackers to bypass intended access restrictions.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2014:0345
vendor-advisory
x_refsource_REDHAT
57675
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:0344
vendor-advisory
x_refsource_REDHAT
RHSA-2014:0343
vendor-advisory
x_refsource_REDHAT
66596
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now