First published: Thu Jul 16 2015(Updated: )
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2; and the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.1.0, 12.1.2.0, and 12.1.3.0 allows remote attackers to affect integrity via unknown vectors related to Java Server Faces.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Fusion Middleware | =2.1.1 | |
Oracle Fusion Middleware | =3.0.1 | |
Oracle Fusion Middleware | =3.1.2 | |
Oracle Fusion Middleware | =10.3.6 | |
Oracle Fusion Middleware | =12.1.1 | |
Oracle Fusion Middleware | =12.1.2.0.0 | |
Oracle Fusion Middleware | =12.1.3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4744 is rated as a critical vulnerability that affects the integrity of the Oracle GlassFish Server and Oracle WebLogic Server components.
To fix CVE-2015-4744, apply the latest patches and updates provided by Oracle for the affected Fusion Middleware versions.
CVE-2015-4744 affects multiple versions of Oracle GlassFish Server and Oracle WebLogic Server within Oracle Fusion Middleware.
Yes, CVE-2015-4744 can be exploited remotely, allowing attackers to potentially compromise the integrity of the system.
There are no official workarounds for CVE-2015-4744, so applying the necessary updates is essential for protection.