Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities BSI Germany

[UPDATE] [hoch] Red Hat JBoss Enterprise Application Platform: Mehrere Schwachstellen

Multiple critical vulnerabilities in Red Hat JBoss Enterprise Application Platform allow a remote, anonymous attacker to execute arbitrary code, conduct cross-site scripting attacks, disclose information, cause denial of service, or bypass security controls. The CVSS base score is 9.8 (Critical). Affected versions include Red Hat JBoss Enterprise Application Platform prior to versions 7.3.13, 7.1.9, and 7.4.9, with updates for other integrated products like IBM SPSS Modeler and F5 BIG-IP also listed.
Read Full Article →

[WID-SEC-2023-0239] Red Hat JBoss Enterprise Application Platform: Mehrere Schwachstellen CVSS Base Score 9.8 (kritisch) CVSS Temporal Score 8.5 (hoch) Remoteangriff ja Datum 31.01.2023 Stand UPDATE 06.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Produktbeschreibung JBoss Enterprise Application Platform ist eine skalierbare Plattform für Java-Anwendungen, inklusive JBoss Application Server, JBoss Hibernate und Boss Seam. Produkte UPDATE 05.07.2026 IBM SPSS Modeler UPDATE 04.05.2025 Red Hat JBoss Enterprise Application Platform <7.3.13 UPDATE 23.02.2025 Red Hat JBoss Enterprise Application Platform <7.3.12 Red Hat JBoss Enterprise Application Platform <7.1.9 UPDATE 03.10.2023 Hitachi Ops Center <Common Services 10.9.3-00 UPDATE 22.05.2023 Hitachi Ops Center UPDATE 18.05.2023 Red Hat JBoss A-MQ Streams <2.4.0 UPDATE 20.04.2023 F5 BIG-IP UPDATE 08.02.2023 Red Hat Enterprise Linux Red Hat OpenShift container platform 4.0.51 31.01.2023 Red Hat JBoss Enterprise Application Platform <7.4.9 Angriff Angriff Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat JBoss Enterprise Application Platform ausnutzen, um beliebigen Programmcode auszuführen, ein Cross-Site-Scritping-Angriff durchzuführen, Informationen offenzulegen, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article