Jboss Enterprise Web Server

by Redhat

Take action — actively targeted

Jboss Enterprise Web Server is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 37.9%
Confirmed actively exploited (CISA) 10.3%
Public exploit code available 6.9%
Based on 29 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2017-12617 8.1 94.4% Yes
CVE-2017-12615 8.1 94.2% Yes
CVE-2016-8735 9.8 93.8% Yes
CVE-2014-0224 7.4 93.0%
CVE-2011-3923 9.8 91.1%
CVE-2015-7501 9.8 71.5%
CVE-2016-5387 8.1 60.3%
CVE-2017-9788 9.1 52.6%
CVE-2016-2183 7.5 41.0%
CVE-2018-1336 7.5 18.6%
CVE-2020-25710 7.5 17.5%
CVE-2019-1559 5.9 5.0%
CVE-2016-3110 7.5 3.2%
CVE-2014-3700 9.8 3.1%
CVE-2018-1304 5.9 2.1%
CVE-2014-3699 9.8 1.2%
CVE-2016-5018 9.1 0.9%
CVE-2016-6796 7.5 0.8%
CVE-2016-0762 5.9 0.5%
CVE-2014-3701 8.1 0.5%
53
/ 100
high-risk
Active Threat 45/50 · Critical
Exploit Availability 8/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.