← back
CVE-2016-2510

CVE-2016-2510

25Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 70%
exploitation probability
70%top 1% of all CVEs
observed exploitation
nono source reports it
BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, related to XThis.Handler.
Affected products
n/a · n/a