Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cc62-496p-hrr7

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью

Описание

Exposure of Sensitive Information to an Unauthorized Actor in JGroup

The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (diagnostic information) and execute arbitrary code by reusing valid credentials.

Пакеты

Наименование

org.jgroups:jgroups

maven
Затронутые версииВерсия исправления

>= 3.0.0, <= 3.2.8.Final

3.2.9.Final

Наименование

org.jgroups:jgroups

maven
Затронутые версииВерсия исправления

>= 3.3.0, <= 3.3.2.Final

3.3.3.Final

EPSS

Процентиль: 70%
0.00622
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 12 лет назад

The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (diagnostic information) and execute arbitrary code by reusing valid credentials.

redhat
больше 12 лет назад

The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (diagnostic information) and execute arbitrary code by reusing valid credentials.

nvd
больше 12 лет назад

The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (diagnostic information) and execute arbitrary code by reusing valid credentials.

debian
больше 12 лет назад

The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and ...

EPSS

Процентиль: 70%
0.00622
Низкий

Дефекты

CWE-200