Description
It was found that the log file viewer in Red Hat JBoss Enterprise Application 6 and 7 allows arbitrary file read to authenticated user via path traversal.
Remediation
References
Related Vulnerabilities
Joomla! Core 1.5.x Arbitrary File Upload (1.5.0 - 1.5.15)
WordPress Plugin Adaptive Images for WordPress Multiple Vulnerabilities (0.6.66)
WordPress 2.2.1 Multiple Vulnerabilities (2.2.1)
WordPress Plugin NewStatPress Multiple Vulnerabilities (0.9.8)
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4302)