Red Hat Wildfly是美国红帽(Red Hat)公司的一款基于JavaEE的轻量级开源应用服务器。 WildFly Core 存在访问控制错误漏洞,该漏洞源于对保管库表达式的访问限制不当。如果 Vault 表达式采用包含多个表达式的单个属性的形式,则具有管理界面访问权限的远程用户可以访问受限制的 Vault 并检索存储在 Vault 中的项目。以下产品和版本受到影响:Wildfly Core: 1.0.0, 1.0.1, 1.0.2, 2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | wildfly-core | Fixed in 16.0.1.Final, 17.0.0.Final and later. | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-4216 | Artifex Software MuPDF 数字错误漏洞 | |
| CVE-2022-36548 | Edoc-doctor-appointment-system 跨站脚本漏洞 | |
| CVE-2022-36547 | Edoc-doctor-appointment-system 跨站脚本漏洞 | |
| CVE-2022-36542 | Edoc-doctor-appointment-system 安全漏洞 | |
| CVE-2022-36545 | Edoc-doctor-appointment-system SQL注入漏洞 | |
| CVE-2022-36544 | Edoc-doctor-appointment-system SQL注入漏洞 | |
| CVE-2022-36543 | Edoc-doctor-appointment-system SQL注入漏洞 | |
| CVE-2022-36546 | Edoc-doctor-appointment-system 跨站请求伪造漏洞 | |
| CVE-2022-0084 | Red Hat Data Grid 安全漏洞 | |
| CVE-2022-25625 | Broadcom Symantec Privileged Access Management 安全漏洞 | |
| CVE-2022-0168 | Linux kernel 代码问题漏洞 | |
| CVE-2021-3414 | Red Hat Satellite 安全漏洞 | |
| CVE-2021-3632 | Red Hat Single Sign-On 授权问题漏洞 | |
| CVE-2021-3585 | openstack-tripleo-heat-templates 安全漏洞 | |
| CVE-2021-3563 | Red Hat OpenStack Platform 安全漏洞 | |
| CVE-2021-3754 | Red Hat Keycloak 安全漏洞 | |
| CVE-2021-3735 | QEMU 安全漏洞 | |
| CVE-2021-3703 | Red Hat OpenShift 安全漏洞 | |
| CVE-2021-3688 | Red Hat JBoss Core Services 信息泄露漏洞 | |
| CVE-2021-3669 | Linux kernel资源管理错误漏洞 |
Showing top 20 of 53 CVEs. View all on vendor page → →
No comments yet