Loading
Oracle, GlassFish Server Open Source Edition 3.0.1 (build 22) is vulnerable to Java Key Store Password Disclosure vulnerability, that makes it possible to provide an unauthenticated attacker plain text password of administrative user and grant access to the web-based administration interface.
Use CWE-287, Oracle vendor hub and Glassfish Server product page to widen CVE-2017-1000030 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-14324, CVE-2018-2911 and CVE-2018-3152 for nearby disclosures in the same product family.