CVE-2021-20318
23.12.2021, 20:15
The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using a JMS ObjectMessage.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | jboss_enterprise_application_platform | 7.3.9:general_availability |
redhat | jboss_enterprise_application_platform | 7.4.0:general_availability |
𝑥
= Vulnerable software versions
Common Weakness Enumeration