Known Vulnerabilities for Jboss Enterprise Web Platform by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Jboss Enterprise Web Platform" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2014-0248 json | org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform (JBEA... | 6.8 - MEDIUM | 2014-07-07 | 2023-02-13 |
| CVE-2014-0224 json | OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict processing of ChangeCipherSpe... | 7.4 - HIGH | 2014-06-05 | 2023-11-07 |
| CVE-2013-4210 json | The org.jboss.remoting.transport.socket.ServerThread class in Red Hat JBoss Remoting for Red Hat JBoss SOA Platform 5.3.1 GA,... | 5 - MEDIUM | 2013-10-01 | 2013-10-31 |
| CVE-2013-2165 json | ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red... | 7.5 - HIGH | 2013-07-23 | 2023-02-13 |
| CVE-2013-0218 json | The GUI installer in JBoss Enterprise Application Platform (EAP) and Enterprise Web Platform (EWP) 5.2.0 and possibly 5.1.2 u... | 2.1 - LOW | 2013-02-05 | 2017-08-29 |
| CVE-2012-5629 json | The default configuration of the (1) LdapLoginModule and (2) LdapExtLoginModule modules in JBoss Enterprise Application Platf... | 7.5 - HIGH | 2013-03-12 | 2023-02-13 |
| CVE-2012-5575 json | Apache CXF 2.5.x before 2.5.10, 2.6.x before CXF 2.6.7, and 2.7.x before CXF 2.7.4 does not verify that a specified cryptogra... | 6.4 - MEDIUM | 2013-08-19 | 2023-02-13 |
| CVE-2012-5478 json | The AuthorizationInterceptor in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BR... | 4.9 - MEDIUM | 2013-02-05 | 2017-08-29 |
| CVE-2012-3370 json | The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) ... | 5.8 - MEDIUM | 2013-02-05 | 2017-08-29 |
| CVE-2012-3369 json | The CallerIdentityLoginModule in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, B... | 4 - MEDIUM | 2013-02-05 | 2017-08-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Jboss Enterprise Web Platform | 5.2.0 | |||
| Application | Redhat | Jboss Enterprise Web Platform | 5.1.2 | |||
| Application | Redhat | Jboss Enterprise Web Platform | 5.1.1 | |||
| Application | Redhat | Jboss Enterprise Web Platform | 5.1.0 | |||
| Application | Redhat | Jboss Enterprise Web Platform | 5.0.0 |