CVE-2016-2173

CVSS v3.1 9.8 (Critical)
98% Progress
CVSS v2.0 7.5 (High)
75% Progress
EPSS 2.03 % (89th)
2.03% Progress
Affected Products 2
Advisories 4

org.springframework.core.serializer.DefaultDeserializer in Spring AMQP before 1.5.5 allows remote attackers to execute arbitrary code.

Weaknesses
CWE-20
Improper Input Validation
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2017-04-21 20:59:00
(7 years ago)
Updated Date
2020-05-28 19:17:02
(4 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Fedoraproject Fedora 22 cpe:2.3:o:fedoraproject:fedora:22
  Fedoraproject Fedora 23 cpe:2.3:o:fedoraproject:fedora:23
  Fedoraproject Fedora 24 cpe:2.3:o:fedoraproject:fedora:24

Configuration #2

    CPE23 From Up To
  Vmware Spring Advanced Message Queuing Protocol prior 1.5.5 version cpe:2.3:a:vmware:spring_advanced_message_queuing_protocol < 1.5.5
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...