CVE-2021-20250 Vulnerability Details
/
/
/
CVE-2021-20250 Metadata Quick Info
CVE Published: 13/05/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021
Source: redhat |
Vendor: n/a |
Product: wildfly
Status : PUBLISHED
CVE-2021-20250 Description
A flaw was found in wildfly. The JBoss EJB client has publicly accessible privileged actions which may lead to information disclosure on the server it is deployed on. The highest threat from this vulnerability is to data confidentiality.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID: CWE-200
CWE Name: CWE-200
Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).