CVEs Blog | G5 Cyber Security

CVE-2015-1849 – AdvancedLdapLodinMogule in Red Hat JBoss Enterprise Application Platform

AdvancedLdapLodinMogule in Red Hat JBoss Enterprise Application Platform (EAP) before 6.4.1 allows attackers to obtain sensitive information via vectors involving logging the LDAP bind credential password when TRACE logging is enabled.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1849

Reference (s):

Exit mobile version