Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40117
HistoryApr 12, 2023 - 5:32 a.m.

Remote Code Execution (RCE)

2023-04-1205:32:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
20
remote code execution
org.apache.linkis
improper parameter filtering
malicious code
mysql jdbc parameters
insecure deserialization
software

EPSS

0.024

Percentile

89.9%

org.apache.linkis:linkis-engineplugin-jdbc is vulnerable to Remote Code Execution (RCE). Improper parameter filtering allows an attacker to upload and execute malicious code on the system, using malicious Mysql JDBC parameters in JDBC EngineConn Module which may trigger insecure deserialization.

EPSS

0.024

Percentile

89.9%

Related for VERACODE:40117