Home / Vulnerabilities / CVE-2010-1871
HIGH SEVERITY
CVE-2010-1871 Red Hat · JBoss Seam 2

Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability

Technical Severity

CVSS v3.1 Metrics

HIGH
8.8 / 10
Minimal Risk Critical
Vector Specification
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitation Likelihood

EPSS Prediction

93.79 %
Predictive Probability
Percentile Rank
99.9 th

Documented as more likely to be exploited than 99.9% of known CVEs.

Detection Date

Dec 10, 2021

Remediation Due

Jun 10, 2022

CISA Catalog Active

Threat Analysis

JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, allows attackers to perform remote code execution. This vulnerability can only be exploited when the Java Security Manager is not properly configured.

Remediation Directive

Apply updates per vendor instructions.

External Intelligence