PT-2022-10386 · Wildfly · Wildfly

Pedro Sampaio

·

Published

2022-04-18

·

Updated

2024-03-06

·

CVE-2021-3503

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Wildfly (affected versions not specified)
Description A flaw was found in Wildfly where insufficient RBAC restrictions may lead to expose metrics data. The highest threat from this vulnerability is to the confidentiality.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

BIT-WILDFLY-2021-3503
CVE-2021-3503
GHSA-C4R5-XVGW-2942

Affected Products

Wildfly