imPC@ndo EN

Tracker / CVE-2021-40865

CVE-2021-40865

Critica 9.8

An Unsafe Deserialization vulnerability exists in the worker services of the Apache Storm supervisor server allowing pre-auth Remote Code Execution (RCE). Apache Storm 2.2.x users should upgrade to version 2.2.1 or 2.3.0. Apache Storm 2.1.x users should upgrade to version 2.1.1. Apache Storm 1.x users should upgrade to version 1.2.4

Prodotti e versioni affette

apache storm · 1.0.0 → 1.2.4
apache storm · 2.1.0 → 2.1.1
apache storm · 2.2.0 → 2.2.1

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti