AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-5422

HIGH · CVSS 8.8 EPSS 2.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-09-07 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-5422
Severity
HIGH
CVSS
8.8
EPSS
2.14%

Original NVD Description

The web console in Red Hat JBoss Operations Network (JON) before 3.3.7 does not properly authorize requests to add users with the super user role, which allows remote authenticated users to gain admin privileges via a crafted POST request.