CVE-2014-9515
EUVD-2014-933029.12.2017, 22:29
Dozer improperly uses a reflection-based approach to type conversion, which might allow remote attackers to execute arbitrary code via a crafted serialized object.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dozer_project | dozer | 𝑥 ≤ 5.5.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References