Unrated severityNVD Advisory· Published Apr 3, 2014· Updated Jun 17, 2026
CVE-2014-0093
CVE-2014-0093
Description
Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.2, when using a Java Security Manager (JSM), does not properly apply permissions defined by a policy file, which causes applications to be granted the java.security.AllPermission permission and allows remote attackers to bypass intended access restrictions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.2.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.2.2:*:*:*:*:*:*:*
- (no CPE)range: =6.2.2
Patches
Vulnerability mechanics
References
5- rhn.redhat.com/errata/RHSA-2014-0343.htmlnvdVendor Advisory
- rhn.redhat.com/errata/RHSA-2014-0344.htmlnvdVendor Advisory
- rhn.redhat.com/errata/RHSA-2014-0345.htmlnvdVendor Advisory
- secunia.com/advisories/57675nvdVendor Advisory
- www.securityfocus.com/bid/66596nvd
News mentions
0No linked articles in our index yet.