Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11857
HistoryJan 15, 2019 - 9:08 a.m.

Arbitrary Code Execution

2019-01-1509:08:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
19

EPSS

0.018

Percentile

88.4%

Apache commons-collections is vulnerable to arbitrary code execution. It was found that the Apache commons-collections library permitted code execution when deserializing objects involving a specially constructed chain of classes. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using the commons-collections library.

References