CVE-2015-5304

Description

Red Hat JBoss Enterprise Application Platform (EAP) before 6.4.5 does not properly authorize access to shut down the server, which allows remote authenticated users with the Monitor, Deployer, or Auditor role to cause a denial of service via unspecified vectors.

Risk Information

Base Score
2.6
MODERATE
Vector
AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:L
EPSS Score
Exploitation Probability
1.287

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2015-5304 are affected in Red Hat JBoss Enterprise Application Platform 7 6.4.4Windows
CVE-2015-5304NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234