2.1
CVSSv2

CVE-2012-3427

Published: 02/02/2014 Updated: 29/08/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/jboss-ec2-eap/, which allows local users to read sensitive information such as Amazon Web Services (AWS) credentials by reading files in the directory.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat jboss enterprise application platform 5.1.2

Vendor Advisories

Synopsis Low: jboss-ec2-eap security update Type/Severity Security Advisory: Low Topic An updated jboss-ec2-eap package that fixes one security issue is nowavailable for JBoss Enterprise Application Platform 512 for Red HatEnterprise Linux 6 running on the Amazon Web Services (AWS) Elastic ComputeCloud (E ...