A flaw was found in wildfly-core. A management user could use the resolve-expression in the HAL Interface to read possible sensitive information from the Wildfly system. This issue could allow a malicious user to access the system and obtain possible sensitive information from the system.
Metrics
Affected Vendors & Products
References
History
Sat, 23 Nov 2024 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2023-11-08T00:56:05.124Z
Updated: 2024-11-22T23:02:03.643Z
Reserved: 2023-08-01T16:39:57.702Z
Link: CVE-2023-4061
Vulnrichment
Updated: 2024-08-02T07:17:11.509Z
NVD
Status : Modified
Published: 2023-11-08T01:15:08.693
Modified: 2024-11-21T08:34:19.580
Link: CVE-2023-4061
Redhat