CVE-2016-3607: Critical severity glassfish vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 3.0.1 and 3.1.2 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Web Container.
Affected Software
2 affected components
Oracle GlassFish Server=3.0.1
Oracle GlassFish Server=3.1.2
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3607?
CVE-2016-3607 is considered to have a high severity impact on confidentiality, integrity, and availability.
2
How do I fix CVE-2016-3607?
To fix CVE-2016-3607, upgrade to the latest patched version of Oracle GlassFish Server.
3
What versions of Oracle GlassFish Server are affected by CVE-2016-3607?
CVE-2016-3607 affects Oracle GlassFish Server versions 3.0.1 and 3.1.2.
4
What type of attacks can exploit CVE-2016-3607?
CVE-2016-3607 can be exploited by remote attackers to compromise the server through vulnerabilities related to the Web Container.
5
Is CVE-2016-3607 a remote vulnerability?
Yes, CVE-2016-3607 is a remote vulnerability that allows attackers to affect the server without physical access.