Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:5438
HistoryNov 16, 2017 - 2:19 a.m.

Deserialization Of Untrusted Data

2017-11-1602:19:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.004 Low

EPSS

Percentile

74.7%

camel-hessian is vulnerable to deserialization of untrusted data. The vulnerability exists because the library does not check that the data to be deserialized is trusted, allowing an attacker to inject and execute arbitrary code through the untrusted data.

0.004 Low

EPSS

Percentile

74.7%