CVE-2016-0710
high
CVSS v3
8.8
CVSS v2
7.5
VIR risk
8.8
Description
Apache Jetspeed vulnerable to SQL Injection
Predictions
Exploit likelihood
92%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: secalert@redhat.com — https://portals.apache.org/jetspeed-2/security-reports.html#CVE-2016-0710
Package impact
| Ecosystem | Package | Vulnerable | Fixed |
|---|---|---|---|
| Maven | org.apache.portals.jetspeed-2:jetspeed | <2.3.1 | 2.3.1 |
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| apache | jetspeed | {"endIncluding":"2.3.0"} | |
References
- http://haxx.ml/post/140552592371/remote-code-execution-in-apache-jetspeed-230-and
- http://packetstormsecurity.com/files/136489/Apache-Jetspeed-Arbitrary-File-Upload.html
- http://www.rapid7.com/db/modules/exploit/multi/http/apache_jetspeed_file_upload
- https://mail-archives.apache.org/mod_mbox/portals-jetspeed-user/201603.mbox/%3C046318A1-226E-453F-9394-B84F1A33E6A4%40bluesunrise.com%3E
- https://portals.apache.org/jetspeed-2/security-reports.html#CVE-2016-0710
- https://www.exploit-db.com/exploits/39643/
- https://nvd.nist.gov/vuln/detail/CVE-2016-0710
- https://mail-archives.apache.org/mod_mbox/portals-jetspeed-user/201603.mbox/%3C046318A1-226E-453F-9394-B84F1A33E6A4@bluesunrise.com%3E
- https://www.exploit-db.com/exploits/39643
CWEs
CWE-89
Verify integrity in audit chain (admin only). AS-IS.