CVE-2017-2595: Red Hat JBoss Enterprise Application Platform
Medium severity, CVSS 6.5. EPSS: 3.1% chance of exploitation in the next 30 days.
It was found that the log file viewer in Red Hat JBoss Enterprise Application 6 and 7 allows arbitrary file read to authenticated user via path traversal.
Affected products
- Red Hat JBoss Enterprise Application Platform: version 6.0.0 only; version 6.4.0 only; version 7.0.0 only; version 7.1.0 only
Published 2018-07-27. Last modified 2026-06-17.