PT-2020-5469 · Apache · Apache Camel
Published
2020-05-14
·
Updated
2022-05-12
·
CVE-2020-11971
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apache Camel versions 2.22.x through 3.1.0
Description
The issue is related to the Java Management Extensions (JMX) component of Apache Camel, which is vulnerable due to insufficient input validation. This flaw can be exploited by a remote attacker to gain unauthorized access to protected information.
Recommendations
For Apache Camel versions 2.22.x through 3.1.0, upgrade to version 3.2.0 to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apache Camel