← Back

CVE-2014-2228

nvd nist
Published: Feb 19, 2020Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

The XStream extension in HP Fortify SCA before 2.2 RC3 allows remote attackers to execute arbitrary code via unsafe deserialization of XML messages.

Affected (10)

Products: Talend: Restlet
1 product
Restlet
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Talend
Up to 2.1.7
Version 2.2 m1
Version 2.2 m2
Version 2.2 m3
Version 2.2 m4
Version 2.2 m5
Version 2.2 m6
Version 2.2 rc1
Version 2.2 rc2
Version 2.2 snapshot

Timeline

No history available yet.