← Back

Enterprise Application Platform

enterprise_application_platform

Vendor: Jboss • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jboss
1Enterprise Application Platform
May 6, 2026
May 6, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The HTTPS NIO Connector allows remote attackers to cause a denial of service (thread consumption) by opening a socket and not sending an SSL handshake, aka a read-timeout vulnerability.
1Jboss
1Enterprise Application Platform
Apr 23, 2026
Aug 10, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
JBoss Enterprise Application Platform (aka JBossEAP or EAP) before 4.2.0.CP03, and 4.3.0 before 4.3.0.CP01, allows remote attackers to obtain sensitive information about "deployed web contexts" via a request to the statu...Show more
JBoss Enterprise Application Platform (aka JBossEAP or EAP) before 4.2.0.CP03, and 4.3.0 before 4.3.0.CP01, allows remote attackers to obtain sensitive information about "deployed web contexts" via a request to the status servlet, as demonstrated by a full=true query string.Show less