CVE-2011-3559
published 2011-10-18CVE-2011-3559: Unspecified vulnerability in Oracle Communications Server 2.0; GlassFish Enterprise Server 2.1.1, 3.0.1, and 3.1.1; and Sun Java System App Server 8.1 and 8.2…
PriorityP338high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
3.14%
86.5th percentile
Unspecified vulnerability in Oracle Communications Server 2.0; GlassFish Enterprise Server 2.1.1, 3.0.1, and 3.1.1; and Sun Java System App Server 8.1 and 8.2 allows remote attackers to affect availability via unknown vectors related to Web Container.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | communications_server | — | — |
| oracle | glassfish_server | — | — |
| oracle | glassfish_server | — | — |
| oracle | glassfish_server | — | — |
| oracle | java_system_application_server | — | — |
| oracle | java_system_application_server | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
JBEWS: Unspecified vulnerability in GlassFish Enterprise Server 2.1.1
vendor_redhat·2011-10-18·CVSS 7.8
CVE-2011-3559 [HIGH] JBEWS: Unspecified vulnerability in GlassFish Enterprise Server 2.1.1
JBEWS: Unspecified vulnerability in GlassFish Enterprise Server 2.1.1
Unspecified vulnerability in Oracle Communications Server 2.0; GlassFish Enterprise Server 2.1.1, 3.0.1, and 3.1.1; and Sun Java System App Server 8.1 and 8.2 allows remote attackers to affect availability via unknown vectors related to Web Container.
Statement: Not vulnerable. This issue affects the GlassFish Web Container component. This component is not shipped with any Red Hat products. JBoss Web and Tomcat provide the web container used in all JBoss products.
Package: Other (Red Hat JBoss Enterprise Web Server 1) - Under investigation
GHSA
GHSA-vvwv-hcqf-p6jp: Unspecified vulnerability in Oracle Communications Server 2
ghsa_unreviewed·2022-05-17
CVE-2011-3559 [HIGH] GHSA-vvwv-hcqf-p6jp: Unspecified vulnerability in Oracle Communications Server 2
Unspecified vulnerability in Oracle Communications Server 2.0; GlassFish Enterprise Server 2.1.1, 3.0.1, and 3.1.1; and Sun Java System App Server 8.1 and 8.2 allows remote attackers to affect availability via unknown vectors related to Web Container.
No detection rules found.
No public exploits indexed.
http://osvdb.org/76476http://secunia.com/advisories/46523http://secunia.com/advisories/46524http://www.oracle.com/technetwork/topics/security/cpuoct2011-330135.htmlhttp://www.securityfocus.com/bid/50204http://www.securitytracker.com/id?1026222https://exchange.xforce.ibmcloud.com/vulnerabilities/70816http://osvdb.org/76476http://secunia.com/advisories/46523http://secunia.com/advisories/46524http://www.oracle.com/technetwork/topics/security/cpuoct2011-330135.htmlhttp://www.securityfocus.com/bid/50204http://www.securitytracker.com/id?1026222https://exchange.xforce.ibmcloud.com/vulnerabilities/70816
2011-10-18
Published