CVE Database
/

CVE-2016-5003

Back to search

CVE-2016-5003

Published: Oct 27, 2017

Modified: Feb 13, 2025

PUBLISHED

Description

The Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to execute arbitrary code via a crafted serialized Java object in an <ex:serializable> element.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2018:1779
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1784
vendor-advisory
x_refsource_REDHAT
91738
vdb-entry
x_refsource_BID
RHSA-2018:2317
vendor-advisory
x_refsource_REDHAT
1036294
vdb-entry
x_refsource_SECTRACK
RHSA-2018:1780
vendor-advisory
x_refsource_REDHAT
91736
vdb-entry
x_refsource_BID
RHSA-2018:3768
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now