CVE-2016-0779
11.04.2017, 16:59
The EjbObjectInputStream class in Apache TomEE before 1.7.4 and 7.x before 7.0.0-M3 allows remote attackers to execute arbitrary code via a crafted serialized object.Enginsight
Vendor | Product | Version |
---|---|---|
apache | tomee | 𝑥 ≤ 1.7.3 |
apache | tomee | 7.0.0:m1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References