CVE-2014-9515
29.12.2017, 22:29
Dozer improperly uses a reflection-based approach to type conversion, which might allow remote attackers to execute arbitrary code via a crafted serialized object.Enginsight
| Vendor | Product | Version |
|---|---|---|
| dozer_project | dozer | 𝑥 ≤ 5.5.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References