PicketBox, as used in Red Hat JBoss Enterprise Application Platform before 6.1.1, allows local users to obtain the admin encryption key by reading the Vault data file.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 01:50
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://rhn.redhat.com/errata/RHSA-2013-1207.html - Vendor Advisory | |
| References | () http://rhn.redhat.com/errata/RHSA-2013-1208.html - Vendor Advisory | |
| References | () http://rhn.redhat.com/errata/RHSA-2013-1209.html - Vendor Advisory | |
| References | () http://rhn.redhat.com/errata/RHSA-2013-1437.html - | |
| References | () http://rhn.redhat.com/errata/RHSA-2014-0029.html - | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=948106 - | 
Information
                Published : 2013-09-28 19:55
Updated : 2025-04-11 00:51
NVD link : CVE-2013-1921
Mitre link : CVE-2013-1921
CVE.ORG link : CVE-2013-1921
JSON object : View
Products Affected
                redhat
- jboss_enterprise_application_platform
CWE
                
                    
                        
                        CWE-310
                        
            Cryptographic Issues
