Lucene search

K
cvelistMitreCVELIST:CVE-2022-46478
HistoryJan 13, 2023 - 12:00 a.m.

CVE-2022-46478

2023-01-1300:00:00
mitre
www.cve.org
rpc interface
datax-web
permission checks
arbitrary commands
hessian serialized data

10 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

52.1%

The RPC interface in datax-web v1.0.0 and v2.0.0 to v2.1.2 contains no permission checks by default which allows attackers to execute arbitrary commands via crafted Hessian serialized data.

10 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

52.1%

Related for CVELIST:CVE-2022-46478