漏洞类别:Local
漏洞等级:
漏洞信息
Red Hat JBoss Operations Network is a middleware management solution that provides a single point of control to deploy, manage, and monitor JBoss Enterprise Middleware, applications, and services.
It was discovered that the JBoss Operations Network server did not correctly restrict access to certain remote APIs. A remote, unauthenticated attacker could use this flaw to execute arbitrary Java methods via ServerInvokerServlet or SchedulerService, and possibly exhaust all available disk space via ContentManager. (CVE-2015-0297)
漏洞危害
A remote, unauthenticated attacker could use this flaw to execute arbitrary Java methods via ServerInvokerServlet or SchedulerService, and possibly exhaust all available disk space via ContentManager.
解决方案
The vendor has released advisories to fix these vulnerabilities. Refer to the following link for further details: RHSA-2015:0862
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论