CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. Its EPSS score suggests a 10.6% probability of exploitation in the next 30 days. It may be remotely exploitable.
CVE
CVE-2016-6330
Severity
CRITICAL
CVSS
9.8
EPSS
10.63%
Original NVD Description
The server in Red Hat JBoss Operations Network (JON), when SSL authentication is not configured for JON server / agent communication, allows remote attackers to execute arbitrary code via a crafted HTTP request, related to message deserialization. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-3737.