Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-3708

Опубликовано: 30 дек. 2010
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4.2 and 4.3 supports the embedding of class files, which allows remote attackers to execute arbitrary code via a crafted static initializer.

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

dapper

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needs-triage]
hardy

ignored

end of life
karmic

ignored

end of life
lucid

ignored

end of life

Показывать по

Ссылки на источники

7.5 High

CVSS2

Связанные уязвимости

redhat
около 15 лет назад

The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4.2 and 4.3 supports the embedding of class files, which allows remote attackers to execute arbitrary code via a crafted static initializer.

nvd
около 15 лет назад

The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4.2 and 4.3 supports the embedding of class files, which allows remote attackers to execute arbitrary code via a crafted static initializer.

debian
около 15 лет назад

The serialization implementation in JBoss Drools in Red Hat JBoss Ente ...

github
больше 3 лет назад

Drools Improper Input Validation vulnerability allows remote attackers to execute arbitrary code in JBoss EAP

7.5 High

CVSS2