CVE-2017-12149

CRITICAL KEV RANSOMWARE NUCLEI LAB

Jboss Application Server - Code Injection

Title source: llm

Description

In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it performs deserialization and thus allowing an attacker to execute arbitrary code via crafted serialized data.

Exploits (12)

nomisec WORKING POC 209 stars
by yunxu1 · remote
https://github.com/yunxu1/jboss-_CVE-2017-12149
nomisec WORKING POC 22 stars
by sevck · remote
https://github.com/sevck/CVE-2017-12149
nomisec WORKING POC 15 stars
by 1337g · remote
https://github.com/1337g/CVE-2017-12149
nomisec WORKING POC 13 stars
by jreppiks · remote
https://github.com/jreppiks/CVE-2017-12149
github WORKING POC 1 stars
by vaishakhcv · perlpoc
https://github.com/vaishakhcv/CVE-exploits/tree/master/CVE-2017-12149
nomisec WORKING POC
by galois17 · poc
https://github.com/galois17/cve-2017-12149-playground
nomisec SCANNER
by zesnd · infoleak
https://github.com/zesnd/cve-2017-12149
nomisec WORKING POC
by JesseClarkND · remote
https://github.com/JesseClarkND/CVE-2017-12149
nomisec WORKING POC
by MrE-Fog · remote
https://github.com/MrE-Fog/jboss-_CVE-2017-12149
github WORKING POC
by winterwolf32 · perlpoc
https://github.com/winterwolf32/CVE_Exploits-/tree/master/CVE-2017-12149
nomisec WORKING POC
by VVeakee · remote
https://github.com/VVeakee/CVE-2017-12149
nomisec WRITEUP
by Xcatolin · poc
https://github.com/Xcatolin/jboss-deserialization

Nuclei Templates (1)

Jboss Application Server - Remote Code Execution
CRITICALby fopina,s0obi
Shodan: http.title:"jboss" || cpe:"cpe:2.3:a:redhat:jboss_enterprise_application_platform"
FOFA: title="jboss"

Scores

CVSS v3 9.8
EPSS 0.9429
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Lab Environment

COMMUNITY
Community Lab
docker pull jboss/base:latest
docker pull vulhub/jboss:as-6.1.0
+9 more repos

Details

CISA KEV 2021-12-10
VulnCheck KEV 2017-12-02
InTheWild.io 2021-04-08
ENISA EUVD EUVD-2017-3733
Ransomware Use Confirmed
CWE
CWE-502
Status published
Products (10)
redhat/jboss_enterprise_application_platform
redhat/jboss_enterprise_application_platform 5.0.0
redhat/jboss_enterprise_application_platform 5.0.1
redhat/jboss_enterprise_application_platform 5.1.0
redhat/jboss_enterprise_application_platform 5.1.1
redhat/jboss_enterprise_application_platform 5.1.2
redhat/jboss_enterprise_application_platform 5.2.0
redhat/jboss_enterprise_application_platform 5.2.1
redhat/jboss_enterprise_application_platform 5.2.2
Red Hat, Inc./jbossas
Published Oct 04, 2017
KEV Added Dec 10, 2021
Tracked Since Feb 18, 2026