CVE-2012-3427: Red Hat JBoss Enterprise Application Platform
Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.
EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/jboss-ec2-eap/, which allows local users to read sensitive information such as Amazon Web Services (AWS) credentials by reading files in the directory.
Affected products
- Red Hat JBoss Enterprise Application Platform: version 5.1.2 only
Published 2014-02-02. Last modified 2026-06-16.