bsh: code execution
| Package(s): | bsh | CVE #(s): | CVE-2016-2510 | ||||||||||||||||||||||||||||||||
| Created: | February 29, 2016 | Updated: | August 1, 2016 | ||||||||||||||||||||||||||||||||
| Description: | From the Debian LTS advisory:
An application that includes BeanShell on the classpath may be vulnerable if another part of the application uses Java serialization or XStream to deserialize data from an untrusted source. A vulnerable application could be exploited for remote code execution, including executing arbitrary shell commands. | ||||||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||||||
