CVE-2016-5477: Medium severity glassfish vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1 and 3.0.1 allows remote attackers to affect confidentiality via vectors related to Administration.
Affected Software
2 affected components
Oracle GlassFish Server=2.1.1
Oracle GlassFish Server=3.0.1
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5477?
CVE-2016-5477 is considered a vulnerability that affects the confidentiality of the Oracle GlassFish Server.
2
How do I fix CVE-2016-5477?
To fix CVE-2016-5477, you should update to the patched versions of Oracle GlassFish Server 2.1.1 or 3.0.1 released by Oracle.
3
Which software versions are affected by CVE-2016-5477?
CVE-2016-5477 affects Oracle GlassFish Server versions 2.1.1 and 3.0.1.
4
Can CVE-2016-5477 be exploited remotely?
Yes, CVE-2016-5477 can be exploited by remote attackers to affect confidentiality.
5
What component is affected in CVE-2016-5477?
CVE-2016-5477 affects the Administration component of the Oracle GlassFish Server in Oracle Fusion Middleware.