CVE-2009-0027
published 2009-03-09CVE-2009-0027: The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not…
PriorityP429medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.80%
76.1th percentile
The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not properly validate the resource path during a request for a WSDL file with a custom web-service endpoint, which allows remote attackers to read arbitrary XML files via a crafted request.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | jboss_enterprise_application_platform | — | — |
| redhat | jboss_enterprise_application_platform | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5xfj-v547-vccj: The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4
ghsa_unreviewed·2022-05-02
CVE-2009-0027 [MEDIUM] CWE-20 GHSA-5xfj-v547-vccj: The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4
The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not properly validate the resource path during a request for a WSDL file with a custom web-service endpoint, which allows remote attackers to read arbitrary XML files via a crafted request.
Red Hat
JBoss EAP unprivileged local xml file access
vendor_redhat·2009-03-06·CVSS 5.0
CVE-2009-0027 [MEDIUM] JBoss EAP unprivileged local xml file access
JBoss EAP unprivileged local xml file access
The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not properly validate the resource path during a request for a WSDL file with a custom web-service endpoint, which allows remote attackers to read arbitrary XML files via a crafted request.
No detection rules found.
No public exploits indexed.
Bugzilla
Moodle: Multiple security fixes in 1.9.7 and 1.8.11 upstream releases
bugzilla·2009-12-06·CVSS 6.8
CVE-2009-4297 [MEDIUM] Moodle: Multiple security fixes in 1.9.7 and 1.8.11 upstream releases
Moodle: Multiple security fixes in 1.9.7 and 1.8.11 upstream releases
Moodle upstream has released latest stable versions (1.9.7 and 1.8.11),
fixing multiple security issues.
The list for 1.9.7 release:
Security issues
* MSA-09-0022 - CVE-2009-4297 Multiple CSRF problems fixed
* MSA-09-0023 - CVE-2009-4298 Fixed user account disclosure in LAMS module
* MSA-09-0024 - CVE-2009-4299 Fixed insufficient access control in
Glossary module
* MSA-09-0025 - CVE-2009-4300 Unneeded MD5 hashes removed from user table
* MSA-09-0026 - CVE-2009-4301 Fixed invalid application access control
in MNET interface
* MSA-09-0027 - CVE-2009-4302 Ensured login information is always sent
secured when using SSL for logins
* MSA-09-0028 - CVE-2009-4303 Passwords and secrets are no longer ever
saved in backups, new
Bugzilla
CVE-2009-0027 JBoss EAP unprivileged local xml file access
bugzilla·2009-01-12·CVSS 5.0
CVE-2009-0027 [MEDIUM] CVE-2009-0027 JBoss EAP unprivileged local xml file access
CVE-2009-0027 JBoss EAP unprivileged local xml file access
The request handler in JBossWS does not correctly verify the resource path
when serving WSDL files for custom web service endpoints. This allows
remote attackers to read arbitrary XML files with the permissions of the
EAP process.
http://rhn.redhat.com/errata/RHSA-2009-0346.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0347.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0348.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0349.htmlhttp://secunia.com/advisories/34112http://www.securityfocus.com/bid/34023http://www.securitytracker.com/id?1021817https://bugzilla.redhat.com/show_bug.cgi?id=479668https://jira.jboss.org/jira/browse/JBPAPP-1548http://rhn.redhat.com/errata/RHSA-2009-0346.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0347.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0348.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0349.htmlhttp://secunia.com/advisories/34112http://www.securityfocus.com/bid/34023http://www.securitytracker.com/id?1021817https://bugzilla.redhat.com/show_bug.cgi?id=479668https://jira.jboss.org/jira/browse/JBPAPP-1548
2009-03-09
Published