RedHat JBoss Enterprise Web Server 1.0.2

CPE Details

RedHat JBoss Enterprise Web Server 1.0.2
1.0.2
2013-07-10
12h50 +00:00
2013-07-18
14h33 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:redhat:jboss_enterprise_web_server:1.0.2:*:*:*:*:*:*:*

Informations

Vendor

redhat

Product

jboss_enterprise_web_server

Version

1.0.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-2186 2013-10-28 20h00 +00:00 The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red Hat JBoss Web Server 1.0.2 allows remote attackers to write to arbitrary files via a NULL byte in a file name in a serialized instance.
7.5
CVE-2013-1976 2013-07-09 15h00 +00:00 The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via a symlink attack on (a) tomcat5-initd.log, (b) tomcat6-initd.log, (c) catalina.out, or (d) tomcat7-initd.log.
6.9