Vulnerability Bulletins

K000135353 : Apache Commons Collection serialized object injection vulnerability CVE-2017-15708


System information

   
Affected software F-Secure

Description

Security Advisory Description In Apache Synapse, by default no authentication is required for Java Remote Method Invocation (RMI). So Apache Synapse 3.0.1 or all previous releases (3.0.0, 2.1.0, 2 ...

More info:

https://my.f5.com/manage/s/article/K000135353?utm_source=f5support&utm_medium=RSS

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2023-07-04
Ministerio de Defensa
CNI
CCN
CCN-CERT