CVE-2017-2595: Red Hat JBoss Enterprise Application Platform

Medium severity, CVSS 6.5. EPSS: 3.1% chance of exploitation in the next 30 days.

It was found that the log file viewer in Red Hat JBoss Enterprise Application 6 and 7 allows arbitrary file read to authenticated user via path traversal.

Affected products

  • Red Hat JBoss Enterprise Application Platform: version 6.0.0 only; version 6.4.0 only; version 7.0.0 only; version 7.1.0 only

Published 2018-07-27. Last modified 2026-06-17.