CVE-2011-0807 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 60.9% (pctl 99)
Patch early
A public exploit exists.
Description
Unspecified vulnerability in Oracle Sun GlassFish Enterprise Server 2.1, 2.1.1, and 3.0.1, and Sun Java System Application Server 9.1, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Administration.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 60.88% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2011-04-20 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| oracle | glassfish server |
| sun | java system application server |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Sun/Oracle GlassFish Server - (Authenticated) Code Execution (Metasploit) | 2011-08-05 |
References
→ the Explorer · watch your stack · NVD