AdvancedLdapLodinMogule in Red Hat JBoss Enterprise Application Platform (EAP) before 6.4.1 allows attackers to obtain sensitive information via vectors involving logging the LDAP bind credential password when TRACE logging is enabled.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2017-09-19T17:00:00

Updated: 2017-09-19T16:57:01

Reserved: 2015-02-17T00:00:00


Link: CVE-2015-1849

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-09-19T17:29:00.217

Modified: 2017-10-04T17:36:39.577


Link: CVE-2015-1849

JSON object: View

cve-icon Redhat Information

No data.

CWE