Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3929
HistoryApr 19, 2017 - 5:40 a.m.

Remote Code Execution (RCE) Through Deserialization

2017-04-1905:40:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.571 Medium

EPSS

Percentile

97.7%

Jackson-databind is vulnerable to remote code execution attacks. These attacks are possible during bean deserialization and attackers are able to execute code and commands.

References