'; } else{ echo ''; } echo '
|
|
|||
Release Date:2025/9/15
Rule Name:CVE-2015-7450: WebSphere Application Server Commons-Collections Library Remote Code Execution
Severity:critical
CVE ID:CVE-2015-7450
| Descripiton:
|
WebSphere is an IBM software platform for enterprise development and intergration of next-generation e-business applications and support business applications from simple web content publishing to enterprise-level transaction processing. IT infrastructure and mobile and social products allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Invoker Transformer class in the Apache Commons Collections library. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.