A vulnerability identified as critical has been detected in Oracle Communications Instant Messaging Server up to 10.0.0. Affected by this issue is some unknown functionality of the component jackson-databind. Performing a manipulation results in deserialization. This vulnerability is cataloged as CVE-2017-15095. It is possible to initiate the... Weiterlesen: CVE-2017-15095 | Oracle Communications Instant Messaging Server up to…
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2017-15095 | Oracle Communications Instant Messaging Server up to 10.0.0 jackson-databind deserialization (Nessus ID 220593 / ID 20086)
A vulnerability identified as critical has been detected in Oracle Communications Instant Messaging Server up to 10.0.0. Affected by this issue is some unknown…
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
NVD Primärbewertung & CISA SSVCCVE-2017-15095
NVD: ModifiedNVD 9.8 · CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NVD-Datenstand: 08.10.2026, 22:16 UTC
Ausnutzung beobachtet: Nein Automatisierbar: Ja Technischer Impact: Total
BSI-Warnung (Deutschland)CVE-2017-15095
Dell Data Protection Advisor: Mehrere Schwachstellen hoch20.01.2026JFrog Artifactory: Mehrere Schwachstellen11.09.2022Red Hat JBoss Enterprise Application Platform: Mehrere Schwachstellen12.03.2018CISA-SSVC-Triage (vulnrichment)CVE-2017-15095
Exploitation: none (Keine bekannte Ausnutzung)Automatable: yes (Automatisierbar)Technical Impact: total (Vollständig)
Quelle: CISA-ADP vulnrichment · Stand 2026-10-08T21:04:44.082048Z · CISA Coordinator
Advisory Radar
Offizielles Hersteller-Update verfügbar
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller hat ein verifiziertes Patch-Release herausgegeben. Sofortiges Rollout auf Test- und Produktivsystemen empfohlen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Red Hat Security Bulletin Verifiziertredhat.com
-
Web Referencewww.securityfocus.com
-
Red Hat Security Bulletin Verifiziertredhat.com
-
Red Hat Security Bulletin Verifiziertredhat.com
-
Red Hat Security Bulletin Verifiziertredhat.com
Intelligence Digest — kostenlos Täglich die wichtigsten Security-News · jederzeit abbestellbar