PT-2020-5469 · Apache · Apache Camel

Published

2020-05-14

·

Updated

2022-05-12

·

CVE-2020-11971

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apache Camel versions 2.22.x through 3.1.0
Description The issue is related to the Java Management Extensions (JMX) component of Apache Camel, which is vulnerable due to insufficient input validation. This flaw can be exploited by a remote attacker to gain unauthorized access to protected information.
Recommendations For Apache Camel versions 2.22.x through 3.1.0, upgrade to version 3.2.0 to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-00728
CVE-2020-11971
GHSA-HFG5-XPVW-C9X4

Affected Products

Apache Camel