CVE-2011-2925

Cumin in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0 records broker authentication credentials in a log file, which allows local users to bypass authentication and perform unauthorized actions on jobs and message queues via a direct connection to the broker.
Configurations

Configuration 1 (hide)

cpe:2.3:o:redhat:enterprise_mrg:2.0:*:*:*:*:*:*:*

History

21 Nov 2024, 01:29

Type Values Removed Values Added
References () http://osvdb.org/75217 - () http://osvdb.org/75217 -
References () http://secunia.com/advisories/45887 - Vendor Advisory () http://secunia.com/advisories/45887 - Vendor Advisory
References () http://secunia.com/advisories/45928 - Vendor Advisory () http://secunia.com/advisories/45928 - Vendor Advisory
References () http://www.redhat.com/support/errata/RHSA-2011-1249.html - Vendor Advisory () http://www.redhat.com/support/errata/RHSA-2011-1249.html - Vendor Advisory
References () http://www.redhat.com/support/errata/RHSA-2011-1250.html - Vendor Advisory () http://www.redhat.com/support/errata/RHSA-2011-1250.html - Vendor Advisory
References () http://www.securityfocus.com/bid/49500 - () http://www.securityfocus.com/bid/49500 -
References () http://www.securitytracker.com/id?1026021 - () http://www.securitytracker.com/id?1026021 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=731574 - () https://bugzilla.redhat.com/show_bug.cgi?id=731574 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/69659 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/69659 -

15 Jul 2021, 19:16

Type Values Removed Values Added
CPE cpe:2.3:a:redhat:enterprise_mrg:2.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_mrg:2.0:*:*:*:*:*:*:*

Information

Published : 2011-09-20 05:55

Updated : 2024-11-21 01:29


NVD link : CVE-2011-2925

Mitre link : CVE-2011-2925

CVE.ORG link : CVE-2011-2925


JSON object : View

Products Affected

redhat

  • enterprise_mrg
CWE
CWE-287

Improper Authentication