First published: Fri Apr 08 2022(Updated: )
A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Wildfly | <27.0.0 | |
Redhat Amq | =2.0 | |
Red Hat AMQ Online | ||
Redhat Integration Camel K | ||
Red Hat Integration - Service Registry | ||
Redhat Jboss A-mq | =7 | |
Red Hat JBoss Enterprise Application Platform | ||
Red Hat Single Sign-On | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-1278 is a vulnerability found in WildFly that allows an attacker to view deployment names, endpoints, and any other data the trace payload may contain.
CVE-2022-1278 has a severity level of high.
CVE-2022-1278 allows an attacker to access sensitive information, such as deployment names and endpoints, in WildFly.
At the moment, there are no known fixes for CVE-2022-1278. It is recommended to apply any patches or updates provided by the vendor once available.
CVE-2022-1278 is associated with CWE-1188, which is the CWE ID for 'Missing Authorization.'