CVE-2015-7501

Description from NVD

Red Hat JBoss A-MQ 6.x; BPM Suite (BPMS) 6.x; BRMS 6.x and 5.x; Data Grid (JDG) 6.x; Data Virtualization (JDV) 6.x and 5.x; Enterprise Application Platform 6.x, 5.x, and 4.3.x; Fuse 6.x; Fuse Service Works (FSW) 6.x; Operations Network (JBoss ON) 3.x; Portal 6.x; SOA Platform (SOA-P) 5.x; Web Server (JWS) 3.x; Red Hat OpenShift/xPAAS 3.x; and Red Hat Subscription Asset Manager 1.3 allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.

Information Acquisition Date:2022-11-02T15:08Z
CVSS 2.0: 10.0 HIGH CVSS 3.x: 9.8 CRITICAL

▼ CVSS3 Vec CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

▼ CVSS2 Vec AV:N/AC:L/Au:N/C:C/I:C/A:C

NVD References

 https://bugzilla.redhat.com/show_bug.cgi?id=1279330
     source:CONFIRM
     tags:Issue Tracking    Third Party Advisory    VDB Entry    Vendor Advisory    
 https://access.redhat.com/solutions/2045023
     source:CONFIRM
     tags:Vendor Advisory    
 https://access.redhat.com/security/vulnerabilities/2059393
     source:CONFIRM
     tags:Vendor Advisory    
 1037640
     source:SECTRACK
     tags:Third Party Advisory    VDB Entry    
 1037053
     source:SECTRACK
     tags:Third Party Advisory    VDB Entry    
 1037052
     source:SECTRACK
     tags:Third Party Advisory    VDB Entry    
 1034097
     source:SECTRACK
     tags:Third Party Advisory    VDB Entry    
 78215
     source:BID
     tags:Third Party Advisory    VDB Entry    
 RHSA-2015:2536
     source:REDHAT
     tags:
 RHSA-2016:1773
     source:REDHAT
     tags:
 RHSA-2016:0040
     source:REDHAT
     tags:
 RHSA-2015:2671
     source:REDHAT
     tags:
 RHSA-2015:2670
     source:REDHAT
     tags:
 RHSA-2015:2524
     source:REDHAT
     tags:
 RHSA-2015:2522
     source:REDHAT
     tags:
 RHSA-2015:2521
     source:REDHAT
     tags:
 RHSA-2015:2517
     source:REDHAT
     tags:
 RHSA-2015:2516
     source:REDHAT
     tags:
 RHSA-2015:2514
     source:REDHAT
     tags:
 RHSA-2015:2502
     source:REDHAT
     tags:
 RHSA-2015:2501
     source:REDHAT
     tags:
 RHSA-2015:2500
     source:REDHAT
     tags:
 http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
     source:CONFIRM
     tags:
 http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html
     source:CONFIRM
     tags:
 http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
     source:CONFIRM
     tags:
 http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html
     source:CONFIRM
     tags:
 https://www.oracle.com/security-alerts/cpujul2020.html
     source:MISC
     tags:

Description from Forti

RHSA-2015:2671: jakarta-commons-collections security update (Important)

Information Acquisition Date:2022/09/29

Affected Products

Impact

Recommended Actions

References

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag: Apache(2 tweets) Java(1 tweets) MySQL(2 tweets) Oracle(12 tweets) Weblogic(2 tweets)



List of frequently cited URLs

URLNum of Times Referred to
https://tryhackme.com/room/tonythetiger3

▼ Show Information from Twitter(25)


List of frequently cited URLs

URLNum of Times Referred to
tryhackme.com3

▼ Show Information from Twitter(25)


GitHub Search Results: Up to 10
NameURL
ianxtianxt/CVE-2015-7501 https://github.com/ianxtianxt/CVE-2015-7501

GitHub Search Results: Up to 10
NameURL
ianxtianxt/CVE-2015-7501 github.com

2023/04/18 Score : 0
Added Har-sia Database : 2020/04/12
Last Modified : 2023/04/18
Highest Scored Date : 2022/09/08
Highest Score : 44