CVE-2014-0058: Red Hat JBoss Enterprise Application Platform
Low severity, CVSS 1.9. EPSS: 0.3% chance of exploitation in the next 30 days.
The security audit functionality in Red Hat JBoss Enterprise Application Platform (EAP) 6.x before 6.2.1 logs request parameters in plaintext, which might allow local users to obtain passwords by reading the log files.
Affected products
- Red Hat JBoss Enterprise Application Platform: version 6.0.0 only; version 6.0.1 only; version 6.1.0 only; version 6.2.0 only
Published 2014-02-26. Last modified 2026-06-17.