Back to bug 1404528

Who When What Removed Added
Jason Shepherd 2016-12-14 02:44:35 UTC Doc Text It was found that the JMX endpoint of Red Hat JBoss EAP 5 deserializes the credentials passed to it. An attacker could use this flaw to cause a denial of service.
Tomas Hoger 2016-12-14 13:23:32 UTC Summary CVE-2016-9585 It was found that the JMX endpoint of Red Hat JBoss EAP 5 deserializes the credentials passed to it. An attacker could use this flaw to cause a denial of service. CVE-2016-9585 EAP-5: unsafe deserialization of user credentials by the JMX endpoint
PnT Account Manager 2018-05-10 18:19:36 UTC CC pavelp
Product Security DevOps Team 2019-06-08 03:04:25 UTC Status NEW CLOSED
Resolution --- WONTFIX
Last Closed 2019-06-08 03:04:25 UTC
Product Security DevOps Team 2019-09-29 14:02:45 UTC Whiteboard impact=low,public=20161214,reported=20161205,source=redhat,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H,eap-5/jbossas=wontfix,soap-5/jbossas=wontfix

Back to bug 1404528