CVE-2016-2170

Publication date

2016-04-12 14:00:00

Family

redhat

State

PUBLISHED

Description

Apache OFBiz 12.04.x before 12.04.06 and 13.07.x before 13.07.03 allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.