Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The EjbObjectInputStream class in Apache TomEE before 1.7.4 and 7.x before 7.0.0-M3 allows remote attackers to execute arbitrary code via a crafted serialized object.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache TomEE 安全漏洞
Vulnerability Description
Apache TomEE是美国阿帕奇(Apache)软件基金会所研发的一款Java EE服务器。 Apache TomEE 1.7.4之前的版本和7.0.0-M3之前的7.x版本中的EjbObjectInputStream类存在安全漏洞。远程攻击者可借助特制的序列化对象利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A