3.5
CVSSv2

CVE-2011-4573

Published: 01/04/2014 Updated: 01/04/2014
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Red Hat JBoss Operations Network (JON) prior to 2.4.2 does not properly enforce "modify resource" permissions for remote authenticated users when deleting a plug-in configuration update from the group connection properties history, which prevents such activities from being recorded in the audit trail.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat jboss operations network

redhat jboss operations network 2.3.1

redhat jboss operations network 2.4

redhat jboss operations network 2.3

redhat jboss operations network 2.2

redhat jboss operations network 2.1.0

redhat jboss operations network 2.0.1

redhat jboss operations network 2.0.0

redhat jboss operations network 1.0.0