Oracle GlassFish Server 3.0.1 / 3.1.2 Unspecified Vulnerability (January 2015 CPU)
High Nessus Network Monitor Plugin ID 9001
Synopsis
The remote web server is affected by an unspecified vulnerability.
Description
Oracle GlassFish versions 3.0.1 and 3.1.2 are affected by an unspecified vulnerability. With trivial effort, a remote unauthenticated attacker can exploit this vulnerability to result in an unauthorized update, insertion, or deletion of data on the GlassFish server. Successful attempts to exploit may result in data loss or denial of service conditions.
Solution
Upgrade to GlassFish Server 3.0.1.10 / 3.1.2.10 or later.