CVE-2016-2510
PoC ×2—CVSS 3.1
8.1 high
EPSS
70%p99
Published
()
Modified
Description
BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, related to XThis.Handler.
In the news0 stories
No ingested article mentions this CVE yet.