Description
Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 allows remote attackers to obtain sensitive information about "deployed web contexts" via a request to the status servlet, as demonstrated by a full=true query string. NOTE: this issue exists because of a CVE-2008-3273 regression.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T01:21:19.049Z
Reserved: 2010-04-15T00:00:00.000Z
Link: CVE-2010-1429
No data.
Status : Deferred
Published: 2010-04-28T22:30:00.840
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-1429
OpenCVE Enrichment
No data.
Weaknesses