Vulnerability Name: | CVE-2017-12149 (CCN-133054) | ||||||||||||
Assigned: | 2017-08-29 | ||||||||||||
Published: | 2017-08-29 | ||||||||||||
Updated: | 2018-05-20 | ||||||||||||
Summary: | In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it performs deserialization and thus allowing an attacker to execute arbitrary code via crafted serialized data. | ||||||||||||
CVSS v3 Severity: | 9.8 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) 8.6 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:U/RC:R)
8.6 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:U/RC:R)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-502 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2017-12149 Source: BID Type: Third Party Advisory, VDB Entry 100591 Source: CCN Type: BID-100591 Red Hat Jboss Enterprise Application Platform CVE-2017-12149 Remote Code Execution Vulnerability Source: REDHAT Type: UNKNOWN RHSA-2018:1607 Source: REDHAT Type: UNKNOWN RHSA-2018:1608 Source: CCN Type: Red Hat Bugzilla Bug 1486220 (CVE-2017-12149) CVE-2017-12149 jbossas: Arbitrary code execution via unrestricted deserialization in ReadOnlyAccessFilter of HTTP Invoker Source: CONFIRM Type: Issue Tracking, Vendor Advisory https://bugzilla.redhat.com/show_bug.cgi?id=1486220 Source: XF Type: UNKNOWN redhat-cve201712149-code-exec(133054) Source: MISC Type: UNKNOWN https://github.com/gottburgm/Exploits/tree/master/CVE-2017-12149 Source: CCN Type: CYBERSECURITY & INFRASTRUCTURE SECURITY AGENCY KNOWN EXPLOITED VULNERABILITIES CATALOG Source: CCN Type: Red Hat Web site Red Hat JBoss Enterprise Application Platform | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |