Vulnerabilities > Netapp > Oncommand Workflow Automation > Critical

DATE CVE VULNERABILITY TITLE RISK
2016-04-21 CVE-2016-3427 Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX.
network
low complexity
oracle canonical debian netapp apache redhat suse opensuse
critical
9.8
2015-05-31 CVE-2015-3292 Code vulnerability in Netapp Oncommand Workflow Automation 2.2.1/3.0
The installer in NetApp OnCommand Workflow Automation before 2.2.1P1 and 3.x before 3.0P1 sets up the Java Debugging Wire Protocol (JDWP) service, which allows remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
netapp CWE-17
critical
10.0