Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-59w9-w874-mh7v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. In several sections of code, the verification of serialized objects sent between nodes (connected via the Peers protocol) allows insecure objects to be deserialized.

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. In several sections of code, the verification of serialized objects sent between nodes (connected via the Peers protocol) allows insecure objects to be deserialized.

EPSS

Процентиль: 75%
0.00899
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
почти 6 лет назад

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. In several sections of code, the verification of serialized objects sent between nodes (connected via the Peers protocol) allows insecure objects to be deserialized.

EPSS

Процентиль: 75%
0.00899
Низкий