Логотип exploitDog
bind:CVE-2022-46366
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-46366

Количество 3

Количество 3

redhat логотип

CVE-2022-46366

около 3 лет назад

Apache Tapestry 3.x allows deserialization of untrusted data, leading to remote code execution. This issue is similar to but distinct from CVE-2020-17531, which applies the the (also unsupported) 4.x version line. NOTE: This vulnerability only affects Apache Tapestry version line 3.x, which is no longer supported by the maintainer. Users are recommended to upgrade to a supported version line of Apache Tapestry.

CVSS3: 7.6
EPSS: Низкий
nvd логотип

CVE-2022-46366

около 3 лет назад

Apache Tapestry 3.x allows deserialization of untrusted data, leading to remote code execution. This issue is similar to but distinct from CVE-2020-17531, which applies the the (also unsupported) 4.x version line. NOTE: This vulnerability only affects Apache Tapestry version line 3.x, which is no longer supported by the maintainer. Users are recommended to upgrade to a supported version line of Apache Tapestry.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-vc39-x7w6-6vj7

около 3 лет назад

Apache Tapestry allows deserialization of untrusted data

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2022-46366

Apache Tapestry 3.x allows deserialization of untrusted data, leading to remote code execution. This issue is similar to but distinct from CVE-2020-17531, which applies the the (also unsupported) 4.x version line. NOTE: This vulnerability only affects Apache Tapestry version line 3.x, which is no longer supported by the maintainer. Users are recommended to upgrade to a supported version line of Apache Tapestry.

CVSS3: 7.6
4%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-46366

Apache Tapestry 3.x allows deserialization of untrusted data, leading to remote code execution. This issue is similar to but distinct from CVE-2020-17531, which applies the the (also unsupported) 4.x version line. NOTE: This vulnerability only affects Apache Tapestry version line 3.x, which is no longer supported by the maintainer. Users are recommended to upgrade to a supported version line of Apache Tapestry.

CVSS3: 9.8
4%
Низкий
около 3 лет назад
github логотип
GHSA-vc39-x7w6-6vj7

Apache Tapestry allows deserialization of untrusted data

CVSS3: 9.8
4%
Низкий
около 3 лет назад

Уязвимостей на страницу