VDB
CVE-2021-28170
CVE-2021-28170
PUBLISHED
CVSS 8.699999809265137 HIGH
JBoss Enterprise Application Platform ist eine skalierbare Plattform für Java-Anwendungen, inklusive JBoss Application Server, JBoss Hibernate und Boss Seam. Red Hat Enterprise Linux (RHEL) ist eine populäre Linux-Distribution.
EPSS 0.12% · 29.7th percentile
Risk Scores
CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.12%
29.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Oracle Financial Services Applications 21.1.0.0.0 | |
| Oracle | Oracle Financial Services Applications 7.0.0.0.0 | |
| Oracle | Oracle Commerce 11.4.0 | |
| Oracle | Oracle Financial Services Applications 14.7.0.7.0 | |
| Oracle | Oracle Fusion Middleware 12.2.1.4.0 | |
| Oracle | Oracle Fusion Middleware 2.4.0 | |
| Red Hat | Red Hat Enterprise Linux 7 | |
| Oracle | Oracle Financial Services Applications 8.1.2.8 | |
| Oracle | Oracle Fusion Middleware 14.1.1.0.0 | |
| Oracle | Oracle Fusion Middleware 1.4.7 | |
| Oracle | Oracle Financial Services Applications 8.1.2.7.0 | |
| Oracle | Oracle Fusion Middleware 8.5.5 | |
| Oracle | Oracle Commerce 11.3.0 | |
| Hitachi | Hitachi Ops Center | |
| Oracle | Oracle Fusion Middleware <=RC1 | |
| Oracle | Oracle Fusion Middleware 1.4.10 | |
| Oracle | Oracle Fusion Middleware 2.2.0 | |
| Oracle | Oracle Financial Services Applications 8.0.7.8 | |
| Oracle | Oracle Commerce 11.3.1 | |
| Oracle | Oracle Financial Services Applications 8.0.8.6 |
…and 22 more
Exploit Intelligence
- https://github.com/eclipse-ee4j/el-ri/issues/155 (nist-nvd)
- https://securitylab.github.com/advisories/GHSL-2020-021-jakarta-el/ (nist-nvd)
- https://www.cisa.gov/news-events/alerts/2024/09/18/cisa-adds-five-known-exploited-vulnerabilities-catalog (certbund)
- dependency-check-suppression.xml (github-poc)
- dependency-check-suppression.xml (github-poc)
- dependency-check-suppression.xml (github-poc)
- dependency-check-suppression.xml (github-poc)
- dependency-check-suppression.xml (github-poc)
- dependency-check-suppression.xml (github-poc)
- dependency-check-suppression.xml (github-poc)
Timeline
- CVE Published
- May 27, 2021 EPSS Score
- Jul 29, 2021 EPSS Score
- Sep 28, 2021 EPSS Score
- Nov 29, 2021 EPSS Score
- Jan 29, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Mar 31, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 31, 2022 EPSS Score
- Aug 2, 2022 EPSS Score
- Oct 2, 2022 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2021/wid-sec-w-2022-0916.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-0916 advisory
- https://access.redhat.com/errata/RHSA-2021:3466 advisory
- https://access.redhat.com/errata/RHSA-2021:3467 advisory
- https://access.redhat.com/errata/RHSA-2021:3468 advisory
- https://access.redhat.com/errata/RHSA-2021:3471 advisory
- https://access.redhat.com/errata/RHSA-2021:3516 advisory
- https://access.redhat.com/errata/RHSA-2021:3658 advisory
- https://access.redhat.com/errata/RHSA-2021:3660 advisory
- https://access.redhat.com/errata/RHSA-2021:3656 advisory
- https://access.redhat.com/errata/RHSA-2022:0589 advisory
- https://access.redhat.com/errata/RHSA-2022:1013 advisory
- https://access.redhat.com/errata/RHSA-2022:1029 advisory
- https://access.redhat.com/errata/RHSA-2022:1179 advisory
- https://security.netapp.com/advisory/ntap-20220804-0003/ advisory
- https://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2022-136/index.html advisory
- https://access.redhat.com/errata/RHSA-2025:9582 advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2024-2180.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2180 advisory
- https://www.oracle.com/security-alerts/cpuapr2022.html#AppendixFMW advisory
…and 7 more