Red Hat JBoss Operations Network 3.3.1 does not properly restrict access to certain APIs, which allows remote attackers to execute arbitrary Java methods via the (1) ServerInvokerServlet or (2) SchedulerService or (3) cause a denial of service (disk consumption) via the ContentManager.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T04:03:10.840Z
Reserved: 2014-11-18T00:00:00
Link: CVE-2015-0297

No data.

Status : Deferred
Published: 2015-04-24T14:59:06.000
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-0297
