CVE-2017-12149
critical · 9.8Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
Added 2021-12-10Remediation due 2022-06-10
A public exploit / detection template exists
Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates →
In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it performs deserialization and thus allowing an attacker to execute arbitrary code via crafted serialized data.
9.8
CVSS
90.7%
EPSS (exploit prob.)
100th
EPSS percentile
2017-10-04
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-502
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| redhat | jboss_enterprise_application_platform | all versions |
| redhat | jboss_enterprise_application_platform | 5.0.0 |
| redhat | jboss_enterprise_application_platform | 5.0.1 |
| redhat | jboss_enterprise_application_platform | 5.1.0 |
| redhat | jboss_enterprise_application_platform | 5.1.1 |
| redhat | jboss_enterprise_application_platform | 5.1.2 |
| redhat | jboss_enterprise_application_platform | 5.2.0 |
| redhat | jboss_enterprise_application_platform | 5.2.1 |
| redhat | jboss_enterprise_application_platform | 5.2.2 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/100591
- https://access.redhat.com/errata/RHSA-2018:1607
- https://access.redhat.com/errata/RHSA-2018:1608
- https://bugzilla.redhat.com/show_bug.cgi?id=1486220
- https://github.com/gottburgm/Exploits/tree/master/CVE-2017-12149
- http://www.securityfocus.com/bid/100591
- https://access.redhat.com/errata/RHSA-2018:1607
- https://access.redhat.com/errata/RHSA-2018:1608
- https://bugzilla.redhat.com/show_bug.cgi?id=1486220
- https://github.com/gottburgm/Exploits/tree/master/CVE-2017-12149
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-12149
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-12149