Red Hat JBoss Operations Network 3.3.1 does not properly restrict access to certain APIs, which allows remote attackers to execute arbitrary Java methods via the (1) ServerInvokerServlet or (2) SchedulerService or (3) cause a denial of service (disk consumption) via the ContentManager.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2015-04-24T14:00:00
Updated: 2024-08-06T04:03:10.840Z
Reserved: 2014-11-18T00:00:00
Link: CVE-2015-0297
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-04-24T14:59:06.000
Modified: 2024-11-21T02:22:45.853
Link: CVE-2015-0297
Redhat