CVE-2015-4744Oracle Fusion Middleware vulnerability

4 documents4 sources
Severity
2.6LOWNVD
EPSS
0.3%
top 47.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 16
Latest updateMay 17

Description

Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2; and the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.1.0, 12.1.2.0, and 12.1.3.0 allows remote attackers to affect integrity via unknown vectors related to Java Server Faces.

CVSS vector

AV:N/AC:H/C:N/I:P/A:NExploitability: 4.9 | Impact: 2.9

Affected Packages1 packages

NVDoracle/fusion_middleware7 versions+6

Patches

🔴Vulnerability Details

2
GHSA
GHSA-hrhc-gjjr-rfhr: Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 22022-05-17
CVEList
CVE-2015-4744: Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 22015-07-16

💬Community

1
Bugzilla
CVE-2015-5348 Camel: Java object deserialisation in Jetty/Servlet2015-12-18
CVE-2015-4744 — Oracle Fusion Middleware vulnerability | cvebase