CISA Known Exploited Vulnerability

CVE-2017-12149 Ransomware

Red Hat · JBoss Application Server

Red Hat JBoss Application Server Remote Code Execution Vulnerability

Date added
BOD 22-01 due date
CWE CWE-502
Ransomware Known

CISA description

The JBoss Application Server, shipped with Red Hat Enterprise Application Platform 5.2, allows an attacker to execute arbitrary code via crafted serialized data.

Required action

Apply updates per vendor instructions.