An improper initialization vulnerability was found in Galleon. When using Galleon to provision custom EAP or EAP-XP servers, the servers are created unsecured. This issue could allow an attacker to access remote HTTP services available from the server.
2024-02-06T09:15:52.407
2024-11-21T08:35:18.310
Modified
CVSSv3.1: 6.8 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | redhat | jboss_enterprise_application_platform | - | Yes |
Application | redhat | jboss_enterprise_application_platform_expansion_pack | - | Yes |
Application | redhat | jboss_enterprise_application_platform | 7.4 | Yes |
Operating System | redhat | enterprise_linux | 7.0 | No |
Operating System | redhat | enterprise_linux | 8.0 | No |
Operating System | redhat | enterprise_linux | 9.0 | No |