PT-2015-6841 · Red Hat · Red Hat Jboss Enterprise Application Platform

Ladislav Thon

·

Published

2015-12-16

·

Updated

2015-12-17

·

CVE-2015-5304

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Red Hat JBoss Enterprise Application Platform (EAP) versions prior to 6.4.5
Description The issue allows remote authenticated users with the Monitor, Deployer, or Auditor role to cause a denial of service. This is due to improper authorization of access to shut down the server.
Recommendations For versions prior to 6.4.5, update to version 6.4.5 or later to resolve the issue.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-5304
RHSA-2015:2538
RHSA-2015:2539
RHSA-2015:2540
RHSA-2015:2542

Affected Products

Red Hat Jboss Enterprise Application Platform