Описание
The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message.
Дополнительная информация
Статус:
Important
https://bugzilla.redhat.com/show_bug.cgi?id=1049692Camel: remote code execution via XSL
EPSS
Процентиль: 94%
0.07352
Низкий
6 Medium
CVSS2
Связанные уязвимости
ubuntu
больше 12 лет назад
The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message.
nvd
больше 12 лет назад
The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message.
github
почти 8 лет назад
Apache Camel's XSLT component allows remote attackers to execute arbitrary Java methods
EPSS
Процентиль: 94%
0.07352
Низкий
6 Medium
CVSS2