296,746
Total vulnerabilities in the database
The default configuration of Red Hat JBoss Portal before 6.1.0 enables the JGroups diagnostics service with no authentication when a JGroups channel is started, which allows remote attackers to obtain sensitive information (diagnostics) by accessing the service.
| Software | From | Fixed in |
|---|---|---|
| redhat / jboss_enterprise_portal_platform | 5.2.2 | 5.2.2.x |
| redhat / jboss_enterprise_portal_platform | 5.0.0 | 5.0.0.x |
| redhat / jboss_enterprise_portal_platform | 5.1.1 | 5.1.1.x |
| redhat / jboss_enterprise_portal_platform | 5.1.0 | 5.1.0.x |
| redhat / jboss_enterprise_portal_platform | 5.2.1 | 5.2.1.x |
| redhat / jboss_enterprise_portal_platform | 4.3.0 | 4.3.0.x |
| redhat / jboss_enterprise_portal_platform | 5.2.0 | 5.2.0.x |
| redhat / jboss_enterprise_portal_platform | 5.0.1 | 5.0.1.x |
| redhat / jboss_enterprise_portal_platform | - | 6.0.0.x |