Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
JBoss AS/EAP 信任管理漏洞
Vulnerability Description
Red Hat JBoss是是美国红帽(Red Hat)公司的一款开源的基于J2EE的应用服务器。 JBoss AS 5.0版本和EAP 5.0版本以及早期版本中的twiddle.sh中存在漏洞,该漏洞源于接受凭证作为命令行参数。本地攻击者可利用该漏洞通过列出过程和其参数读取凭证。
CVSS Information
N/A
Vulnerability Type
N/A