Red Hat JBoss Enterprise Application Platform (JEAP) 5.2.0、Red Hat JBoss BRMS 5.3.1、Red Hat JBoss Portal Platform 5.2.2、Red Hat JBoss SOA Platform 5.3.1内使用的JBoss Remoting的jmx-remoting.sar没有正确实现JS4 160规范,这可使远程攻击者执行任意代码。RHEL6.5安装OpenJDK1.7.0 + JBoss7.1.1 + Maven3.0.4 http://www.linuxidc.com/Linux/2014-04/99854.htmJBoss低版本项目热部署到JBoss7 http://www.linuxidc.com/Linux/2014-04/99853.htm