Description
JBoss Enterprise Service Bus (ESB) before 4.7 CP02 in JBoss Enterprise SOA Platform before 5.0.2 does not properly consider the security domain with which a service is secured, which might allow remote attackers to gain privileges by executing a service.
Affected products
- RedHat / jboss_enterprise_service_bus4.7
- RedHat / jboss_enterprise_service_bus4.0 – 4.0
- RedHat / jboss_enterprise_service_bus4.2 – 4.2
- RedHat / jboss_enterprise_service_bus4.2.1 – 4.2.1
- RedHat / jboss_enterprise_service_bus4.3 – 4.3
- RedHat / jboss_enterprise_service_bus4.4 – 4.4
- RedHat / jboss_enterprise_service_bus4.5 – 4.5
- RedHat / jboss_enterprise_service_bus4.6 – 4.6
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.2.0 – 4.2.0
- RedHat / jboss_enterprise_soa_platform4.3.0 – 4.3.0
- RedHat / jboss_enterprise_soa_platform4.3.0 – 4.3.0
- RedHat / jboss_enterprise_soa_platform4.3.0 – 4.3.0
- RedHat / jboss_enterprise_soa_platform4.3.0 – 4.3.0
- RedHat / jboss_enterprise_soa_platform4.3.0 – 4.3.0
- RedHat / jboss_enterprise_soa_platform5.0.0 – 5.0.0
- RedHat / jboss_enterprise_soa_platform5.0.1 – 5.0.1