← العودة للجدول
CVE-2013-4521
CVE-2013-4521 — RichFaces implementation in Nuxeo Platform 5.6.0 before HF27 and 5.8.0 before HF
📅 2020-02-06
🔴 Critical 🔥 No NVD Vulnerability Vulnerability CVSS 9.8

📋 الوصف الكامل

RichFaces implementation in Nuxeo Platform 5.6.0 before HF27 and 5.8.0 before HF-01 does not restrict the classes for which deserialization methods can be called, which allows remote attackers to execute arbitrary code via crafted serialized data. NOTE: this vulnerability may overlap CVE-2013-2165.

💻 الأنظمة المتأثرة

RichFaces implementation in

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2013-4521

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2013-4521 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←