Critical severity9.8NVD Advisory· Published Sep 27, 2016· Updated May 6, 2026
CVE-2016-6330
CVE-2016-6330
Description
The server in Red Hat JBoss Operations Network (JON), when SSL authentication is not configured for JON server / agent communication, allows remote attackers to execute arbitrary code via a crafted HTTP request, related to message deserialization. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-3737.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/92568nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingMitigationVendor Advisory
- www.tenable.com/security/research/tra-2016-22nvd
News mentions
0No linked articles in our index yet.