How to remedy the following vulnerability in Enterprise Management (ENTM) Server?
Vulnerability Name - Red Hat JBoss Application Server Remote Code Execution Vulnerability
Port - 18080
Severity - High
CVE ID - CVE-2017-7504
Release : 14.0
Jboss Application version is Jboss-4.2.3.GA.
The only way to fix this problem is to disable HTTP and allow only HTTPS access to the ENTM server.
You can disable port 18080 in the JBoss configuration files and only allow HTTPS access.
The steps for enabling only HTTPs port are described in here.