9.8
CVSSv3

CVE-2015-9245

Published: 31/10/2017 Updated: 22/11/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insecure default configuration in Progress Software OpenEdge 10.2x and 11.x allows unauthenticated remote malicious users to specify arbitrary URLs from which to load and execute malicious Java classes via port 20931.

Vulnerable Product Search on Vulmon Subscribe to Product

progress openedge 11.1

progress openedge 10.2b08

progress openedge 10.2a

progress openedge 10.2b

progress openedge 11.5

progress openedge 11.4

progress openedge 11.3

progress openedge 11.2

progress openedge 11.0

progress openedge 10.2b07