Lucene search

K
redhatcveRedhat.comRH:CVE-2018-12023
HistoryApr 09, 2020 - 7:26 a.m.

CVE-2018-12023

2020-04-0907:26:18
redhat.com
access.redhat.com
11

0.009 Low

EPSS

Percentile

82.7%

A vulnerability was discovered in jackson-databind where it would permit deserialization of a malicious object using Oracle JDBC classes when using DefaultTyping. An attacker could use this flaw to achieve remote code execution under certain circumstances.