cbcvebase.
CVE-2012-5626
published 2020-01-23

CVE-2012-5626: EJB method in Red Hat JBoss BRMS 5; Red Hat JBoss Enterprise Application Platform 5; Red Hat JBoss Operations Network 3.1; Red Hat JBoss Portal 4 and 5; Red…

high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EJB method in Red Hat JBoss BRMS 5; Red Hat JBoss Enterprise Application Platform 5; Red Hat JBoss Operations Network 3.1; Red Hat JBoss Portal 4 and 5; Red Hat JBoss SOA Platform 4.2, 4.3, and 5; in Red Hat JBoss Enterprise Web Server 1 ignores roles specified using the @RunAs annotation.

Affected

18 ranges
VendorProductVersion rangeFixed in
red_hatjboss_brms
red_hatjboss_enterprise_application_platform
red_hatjboss_enterprise_web_server
red_hatjboss_operations_network
red_hatjboss_portal
red_hatjboss_portal
red_hatjboss_soa_platform
red_hatjboss_soa_platform
red_hatjboss_soa_platform
redhatjboss_brms
redhatjboss_enterprise_application_platform
redhatjboss_enterprise_web_server
redhatjboss_operations_network
redhatjboss_portal
redhatjboss_portal
redhatjboss_soa_platform
redhatjboss_soa_platform
redhatjboss_soa_platform