CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Oracle, Java. Exploitation may require the attacker to be authenticated.
CVE
CVE-2017-1000030
Severity
CRITICAL
CVSS
9.8
EPSS
1.70%
Oracle Java
Original NVD Description
Oracle, GlassFish Server Open Source Edition 3.0.1 (build 22) is vulnerable to Java Key Store Password Disclosure vulnerability, that makes it possible to provide an unauthenticated attacker plain text password of administrative user and grant access to the web-based administration interface.
Related CVEs
Other vulnerabilities affecting the same vendor(s)