CVE-2019-14839: Red Hat Business-Central
High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.
It was observed that while login into Business-central console, HTTP request discloses sensitive information like username and password when intercepted using some tool like burp suite etc.
Affected products
- Red Hat Business-Central: up to and including 7.48.0
- Red Hat Descision Manager: version 7.0 only
- Red Hat Process Automation: version 7.0 only
Published 2022-04-01. Last modified 2026-06-17.