CVE-2014-0248
published 2014-07-07CVE-2014-0248: org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform (JBEAP) 5.2.0, and JBoss Enterprise Web…
PriorityP342medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
3.51%
87.9th percentile
org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform (JBEAP) 5.2.0, and JBoss Enterprise Web Platform (JBEWP) 5.2.0 allows remote attackers to execute arbitrary code via a crafted authentication header, related to Seam logging.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | jboss_enterprise_application_platform | — | — |
| redhat | jboss_enterprise_web_platform | — | — |
| redhat | jboss_web_framework_kit | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q9w9-gcjg-v636: org
ghsa_unreviewed·2022-05-14
CVE-2014-0248 [MEDIUM] CWE-94 GHSA-q9w9-gcjg-v636: org
org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform (JBEAP) 5.2.0, and JBoss Enterprise Web Platform (JBEWP) 5.2.0 allows remote attackers to execute arbitrary code via a crafted authentication header, related to Seam logging.
Red Hat
Seam: RCE via unsafe logging in AuthenticationFilter
vendor_redhat·2014-06-23·CVSS 6.8
CVE-2014-0248 [MEDIUM] CWE-94 Seam: RCE via unsafe logging in AuthenticationFilter
Seam: RCE via unsafe logging in AuthenticationFilter
org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform (JBEAP) 5.2.0, and JBoss Enterprise Web Platform (JBEWP) 5.2.0 allows remote attackers to execute arbitrary code via a crafted authentication header, related to Seam logging.
It was found that the org.jboss.seam.web.AuthenticationFilter class implementation did not properly use Seam logging. A remote attacker could send specially crafted authentication headers to an application, which could result in arbitrary code execution with the privileges of the user running that application.
Package: seam (Red Hat BPM Suite 6) - Not affected
Package: seam (Red Hat JBoss BRMS 5) - Will not fix
Package: seam (Red Hat JBoss BRM
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2014-0785.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0791.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0792.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0793.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0794.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1888.htmlhttp://secunia.com/advisories/59346http://secunia.com/advisories/59554http://secunia.com/advisories/59555http://www.securitytracker.com/id/1030457http://rhn.redhat.com/errata/RHSA-2014-0785.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0791.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0792.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0793.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0794.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1888.htmlhttp://secunia.com/advisories/59346http://secunia.com/advisories/59554http://secunia.com/advisories/59555http://www.securitytracker.com/id/1030457
2014-07-07
Published