Tracker / CVE-2021-20190
CVE-2021-20190
Alta 8.1
A flaw was found in jackson-databind before 2.9.10.7. FasterXML mishandles the interaction between serialization gadgets and typing. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Prodotti e versioni affette
| apache | nifi · 1.7.0 → 1.12.1 |
|---|---|
| debian | debian_linux |
| fasterxml | jackson-databind · … → 2.6.7.5 |
| fasterxml | jackson-databind · 2.7.0 → 2.9.10.7 |
| netapp | active_iq_unified_manager |
| netapp | oncommand_api_services |
| netapp | oncommand_insight |
| netapp | service_level_manager |
| oracle | commerce_experience_manager |
| oracle | commerce_guided_search |
Analisi
Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.