First published: Fri Dec 06 2019(Updated: )
An issue exists in the property replacements feature in any descriptor in JBoxx AS 7.1.1 ignores java security policies
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Jboss Community Application Server | =7.1.1 | |
Linux Linux kernel | ||
Redhat Jboss Enterprise Web Server | =1.0.0 | |
debian/jbossas4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2148 is a vulnerability that exists in the property replacements feature in JBoss AS 7.1.1, which ignores Java security policies.
The severity of CVE-2012-2148 is low, with a severity value of 3.3.
Red Hat JBoss Community Application Server 7.1.1 and Red Hat JBoss Enterprise Web Server 1.0.0 are affected by CVE-2012-2148.
There is no known fix for CVE-2012-2148 at the moment. It is recommended to apply any security patches or updates provided by the software vendor.
You can find more information about CVE-2012-2148 at the following references: [Red Hat](https://access.redhat.com/security/cve/cve-2012-2148), [Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-2148), and [Debian Security Tracker](https://security-tracker.debian.org/tracker/CVE-2012-2148).