CISA Known Exploited Vulnerability

CVE-2015-7450

IBM · WebSphere Application Server and Server Hypervisor Edition

IBM WebSphere Application Server and Server Hypervisor Edition Code Injection.

Date added
BOD 22-01 due date
CWE CWE-94
Ransomware Unknown

CISA description

Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT infrastructure, and mobile and social products allow remote attackers to execute arbitrary commands

Required action

Apply updates per vendor instructions.