Описание
Skyscreamer Open Source Nevado JMS v1.3.2 does not perform security checks when receiving messages. This allows attackers to execute arbitrary commands via supplying crafted data.
Ссылки
- Product
- Issue Tracking
- Release Notes
- ExploitThird Party Advisory
- Product
- Issue Tracking
- Release Notes
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:skyscreamer:nevado_jms:1.3.2:*:*:*:*:*:*:*
EPSS
Процентиль: 11%
0.00039
Низкий
7.8 High
CVSS3
Дефекты
CWE-862
CWE-862
Связанные уязвимости
EPSS
Процентиль: 11%
0.00039
Низкий
7.8 High
CVSS3
Дефекты
CWE-862
CWE-862