Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-2510

Опубликовано: 07 апр. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8
CVSS3: 8.1

Описание

BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, related to XThis.Handler.

РелизСтатусПримечание
devel

released

2.0b4-17ubuntu1
esm-infra-legacy/trusty

released

2.0b4-15ubuntu0.14.04.1
precise

released

2.0b4-12ubuntu0.1
trusty

released

2.0b4-15ubuntu0.14.04.1
trusty/esm

released

2.0b4-15ubuntu0.14.04.1
upstream

released

2.0b6
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

released

2.0b4-15ubuntu0.15.10.1

Показывать по

6.8 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
redhat
почти 10 лет назад

BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, related to XThis.Handler.

CVSS3: 8.1
nvd
почти 10 лет назад

BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, related to XThis.Handler.

CVSS3: 8.1
debian
почти 10 лет назад

BeanShell (bsh) before 2.0b6, when included on the classpath by an app ...

suse-cvrf
почти 10 лет назад

Security update for bsh2

suse-cvrf
почти 10 лет назад

Security update for bsh2

6.8 Medium

CVSS2

8.1 High

CVSS3