CVE-2017-12149 Scanner
Detects 'Code Injection' vulnerability in Red Hat jbossas affects v. Unknown.
Used 3.1k times · 5.9k assets checked · domain, ipv4, subdomain
In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it performs deserialization and thus allowing an attacker to execute arbitrary code via crafted serialized data.
Detects 'Code Injection' vulnerability in Red Hat jbossas affects v. Unknown.
Used 3.1k times · 5.9k assets checked · domain, ipv4, subdomain
S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.
Create a free account →