CVE-2013-4112

The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (diagnostic information) and execute arbitrary code by reusing valid credentials.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:jgroups:jgroup:3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.4:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.5:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.6:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.7:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.8:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.9:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.10:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.11:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.12:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.13:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.0.14:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.1.0:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.0:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.1:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.2:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.3:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.4:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.5:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.6:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.7:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.2.8:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.3.0:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.3.1:*:*:*:*:*:*:*
cpe:2.3:a:jgroups:jgroup:3.3.2:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-09-28 19:55

Updated : 2024-02-04 18:16


NVD link : CVE-2013-4112

Mitre link : CVE-2013-4112

CVE.ORG link : CVE-2013-4112


JSON object : View

Products Affected

redhat

  • jboss_enterprise_application_platform

jgroups

  • jgroup
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor