Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36vx-8x4w-9h2m

Опубликовано: 24 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using a JMS ObjectMessage.

The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using a JMS ObjectMessage.

EPSS

Процентиль: 84%
0.02131
Низкий

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 6.6
redhat
больше 4 лет назад

The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using a JMS ObjectMessage.

CVSS3: 7.2
nvd
около 4 лет назад

The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using a JMS ObjectMessage.

EPSS

Процентиль: 84%
0.02131
Низкий

Дефекты

CWE-502