Security Advisory

CVE-2020-1748

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-16 15:27:36
Last updated 2024-08-04 06:46:30
Assigner redhat
State PUBLISHED

Description

A flaw was found in all supported versions before wildfly-elytron-1.6.8.Final-redhat-00001, where the WildFlySecurityManager checks were bypassed when using custom security managers, resulting in an improper authorization. This flaw leads to information exposure by unauthenticated access to secure resources.