AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-5304

LOW · CVSS 3.5 EPSS 1.80%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-12-16 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.5. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.

CVE
CVE-2015-5304
Severity
LOW
CVSS
3.5
EPSS
1.80%

Original NVD Description

Red Hat JBoss Enterprise Application Platform (EAP) before 6.4.5 does not properly authorize access to shut down the server, which allows remote authenticated users with the Monitor, Deployer, or Auditor role to cause a denial of service via unspecified vectors.