AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-6934

HIGH · CVSS 7.3 EPSS 5.05%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-12-21 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.3. It affects VMware, VMWare, vCenter and other products. It may be remotely exploitable.

CVE
CVE-2015-6934
Severity
HIGH
CVSS
7.3
EPSS
5.05%
VMware VMWare vCenter Apache Java

Original NVD Description

Serialized-object interfaces in VMware vRealize Orchestrator 6.x, vCenter Orchestrator 5.x, vRealize Operations 6.x, vCenter Operations 5.x, and vCenter Application Discovery Manager (vADM) 7.x allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.