CVE-2005-2158: High severity JBoss jBPM vulnerability
Published Jul 6, 2005
·Updated
A regression error in the embedded HSQLDB in JBoss jBPM 2.0 allows remote attackers to execute arbitrary comands, a re-introduction of a vulnerability that was originally identified by CVE-2003-0845.
Affected Software
1 affected component
JBoss jBPM=2.0
Remediation
Patch Available
Event History
Jul 6, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2158?
CVE-2005-2158 is classified as a critical vulnerability due to the potential for remote command execution.
2
How do I fix CVE-2005-2158?
To fix CVE-2005-2158, you should upgrade to a patched version of JBoss jBPM that resolves this regression issue.
3
What software is affected by CVE-2005-2158?
CVE-2005-2158 affects JBoss jBPM version 2.0.
4
What kind of attack vectors are possible with CVE-2005-2158?
CVE-2005-2158 allows remote attackers to execute arbitrary commands on the affected system.
5
Is CVE-2005-2158 a re-introduction of a previous vulnerability?
Yes, CVE-2005-2158 is a re-introduction of a vulnerability that was earlier identified by CVE-2003-0845.