Security Advisory

CVE-2021-20318

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-12-23 19:48:41
Last updated 2024-08-03 17:37:23
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using a JMS ObjectMessage.