vulnerability
Red Hat JBoss EAP: CVE-2023-4503: Improper Initialization
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
8 | (AV:N/AC:M/Au:S/C:C/I:C/A:N) | Dec 4, 2023 | Sep 19, 2024 | Jul 9, 2025 |
Severity
8
CVSS
(AV:N/AC:M/Au:S/C:C/I:C/A:N)
Published
Dec 4, 2023
Added
Sep 19, 2024
Modified
Jul 9, 2025
Description
An improper initialization vulnerability was found in Galleon. When using Galleon to provision custom EAP or EAP-XP servers, the servers are created unsecured. This issue could allow an attacker to access remote HTTP services available from the server.. An improper initialization vulnerability was found in Galleon. When using Galleon to provision custom EAP or EAP-XP servers, the servers are created unsecured. This issue could allow an attacker to access remote HTTP services available from the server.
Solution
red-hat-jboss-eap-upgrade-latest
References
- CWE-665
- CVE-2023-4503
- https://attackerkb.com/topics/CVE-2023-4503
- URL-https://access.redhat.com/security/cve/CVE-2023-4503
- URL-https://bugzilla.redhat.com/show_bug.cgi?id=2184751
- URL-https://access.redhat.com/errata/RHSA-2023:7637
- URL-https://access.redhat.com/errata/RHSA-2023:7638
- URL-https://access.redhat.com/errata/RHSA-2023:7639
- URL-https://access.redhat.com/errata/RHSA-2023:7641
- URL-https://access.redhat.com/errata/RHSA-2024:3580
- URL-https://access.redhat.com/errata/RHSA-2024:3581
- URL-https://access.redhat.com/errata/RHSA-2024:3583

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.