jbrotsos / JavaVulnerableLab

lab
GNU General Public License v2.0
0 stars 0 forks source link

CX: CVE-2015-6420 in Yarn-commons-collections:commons-collections and 3.2.1 @ JavaVulnerableLab.refs/heads/master #8

Open github-actions[bot] opened 3 years ago

github-actions[bot] commented 3 years ago

Description

Serialized-object interfaces in certain Cisco Collaboration and Social Media; Endpoint Clients and Client Software; Network Application, Service, and Acceleration; Network and Content Security Devices; Network Management and Provisioning; Routing and Switching - Enterprise and Service Provider; Unified Computing; Voice and Unified Communications Devices; Video, Streaming, TelePresence, and Transcoding Devices; Wireless; and Cisco Hosted Services products allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.

HIGH Vulnerable Package issue exists @ commons-collections:commons-collections in branch refs/heads/master

Vulnerability ID: CVE-2015-6420

Package Name: commons-collections:commons-collections

Severity: HIGH

CVSS Score: 7.5

Publish Date: 2015-12-15T05:59:00

Current Package Version: 3.2.1

Remediation Upgrade Recommendation: 3.2.2

Link To SCA

Reference – NVD link

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.

github-actions[bot] commented 3 years ago

Issue still exists.