AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-3708

HIGH · CVSS 7.5 EPSS 3.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-12-30 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It may be remotely exploitable.

CVE
CVE-2010-3708
Severity
HIGH
CVSS
7.5
EPSS
3.02%

Original NVD Description

The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4.2 and 4.3 supports the embedding of class files, which allows remote attackers to execute arbitrary code via a crafted static initializer.