Jboss Enterprise Soa Platform
Vendor:
First CVE: Aug 10, 2010 · Active for 15 years
17
Total CVEs
More Total CVEs than 94% of tracked products
2.4
Avg CVEs / Year
Higher CVE frequency than 77% of tracked products
6.1
Avg CVSS
Higher Avg CVSS than 28% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Jboss Enterprise Soa Platform over time
Volume of CVEsAvg CVSS Base Score
First CVE
Aug 10, 2010
15 years ago
Most Recent CVE
Mar 11, 2020
2,330 days ago
CVE Severity & Scoring
Jboss Enterprise Soa Platform17 CVEs
12%
65%
18%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network2 (11.8%)
Unknown15 (88.2%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (5.9%)
High1 (5.9%)
Unknown15 (88.2%)
User Interaction
None2 (11.8%)
Unknown15 (88.2%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None2 (11.8%)
Unknown15 (88.2%)
Top CVEs
Signals from CVEs in this product scope (17 CVEs).
17 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-7501CRITICAL Red Hat JBoss A-MQ 6.x; BPM Suite (BPMS) 6.x; BRMS 6.x and 5.x; Data Grid (JDG) 6.x; Data Virtualization (JDV) 6.x and 5.x; Enterprise Application Platform 6.x, 5.x, and 4.3.x; Fus | Nov 9, 2017 | 9.8 | 74 | NO | NO |
CVE-2011-4605HIGH The (1) JNDI service, (2) HA-JNDI service, and (3) HAJNDIFactory invoker servlet in JBoss Enterprise Application Platform 4.3.0 CP10 and 5.1.2, Web Platform 5.1.2, SOA Platform 4.2 | Nov 23, 2012 | 7.5 | 25 | NO | NO |
CVE-2013-2165HIGH ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red Hat JBoss Web Platform through 5.2.0, Red Hat JBoss En | Jul 23, 2013 | 7.5 | 24 | NO | NO |
CVE-2012-5575MEDIUM Apache CXF 2.5.x before 2.5.10, 2.6.x before CXF 2.6.7, and 2.7.x before CXF 2.7.4 does not verify that a specified cryptographic algorithm is allowed by the WS-SecurityPolicy Algo | Aug 19, 2013 | 6.4 | 23 | NO | NO |
CVE-2011-2196MEDIUM jboss-seam.jar in the JBoss Seam 2 framework 2.2.x and earlier, as distributed in Red Hat JBoss Enterprise SOA Platform 4.3.0.CP05 and 5.1.0; JBoss Enterprise Application Platform | Jul 27, 2011 | 6.8 | 23 | NO | NO |
CVE-2010-3708HIGH The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4 | Dec 30, 2010 | 7.5 | 23 | NO | NO |
CVE-2011-2487MEDIUM The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack. | Mar 11, 2020 | 5.9 | 22 | NO | NO |
CVE-2011-4085MEDIUM The servlets invoked by httpha-invoker in JBoss Enterprise Application Platform before 5.1.2, SOA Platform before 5.2.0, BRMS Platform before 5.3.0, and Portal Platform before 4.3 | Nov 23, 2012 | 6.8 | 22 | NO | NO |
CVE-2011-1484MEDIUM jboss-seam.jar in the JBoss Seam 2 framework 2.2.x and earlier, as distributed in Red Hat JBoss Enterprise SOA Platform 4.3.0.CP04 and 5.1.0 and JBoss Enterprise Application Platfo | Jul 27, 2011 | 6.8 | 22 | NO | NO |
CVE-2011-2908MEDIUM Cross-site request forgery (CSRF) vulnerability in the JMX Console (jmx-console) in JBoss Enterprise Portal Platform before 5.2.2, BRMS Platform 5.3.0 before roll up patch1, and SO | Nov 23, 2012 | 6.0 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (17 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (17 CVEs).
Media Mentions
Signals from CVEs in this product scope (17 CVEs).
Top CNAs Publishing CVEs For Jboss Enterprise Soa Platform
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.3.1 | 3 | 6.4 | 6.0% | 0 | 0 |
| 5.3.0 | 3 | 6.2 | 5.6% | 0 | 0 |
| 5.2.0 | 1 | 7.5 | 12.7% | 0 | 0 |
| 5.1.1 | 3 | 5.1 | 5.2% | 0 | 0 |
| 5.1.0 | 7 | 5.8 | 3.7% | 0 | 0 |
| 5.0.2 | 4 | 5.5 | 4.7% | 0 | 0 |
| 5.0.1 | 5 | 5.1 | 3.9% | 0 | 0 |
| 5.0.0 | 7 | 5.8 | 14.9% | 0 | 0 |
| 4.3.0 | 12 | 5.7 | 3.8% | 0 | 0 |
| 4.2.0 | 9 | 5.6 | 3.7% | 0 | 0 |