Security Advisory

CVE-2018-14627

5.3
MEDIUM

Vulnerability Description

The IIOP OpenJDK Subsystem in WildFly before version 14.0.0 does not honour configuration when SSL transport is required. Servers before this version that are configured with the following setting allow clients to create plaintext connections:
Published Date September 4, 2018
Official Source NIST NVD Advisory