← Back

CVE-2021-27568

nvd nist
Published: Feb 23, 2021Modified: Jun 17, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

An issue was discovered in netplex json-smart-v1 through 2015-10-23 and json-smart-v2 through 2.4. An exception is thrown from a function, but it is not caught, as demonstrated by NumberFormatException. When it is not caught, it may cause programs using the library to crash or expose sensitive information.

Affected (13)

Json Smart V1
Json Smart V2
5 products
Oss Support Tools
Peoplesoft Enterprise Peopletools
Utilities Framework
Weblogic Server
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.3.2
Before 2.3.1
From 2.4 to 2.4.1
Configuration B
10 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.14.0
Before 2.12.42
Oracle
Version 8.58
Version 8.59
Oracle
Version 4.4.0.0.0
Version 4.4.0.2.0
Version 4.4.0.3.0
Oracle
Version 12.2.1.3.0
Version 12.2.1.4.0
Version 14.1.1.0.0

References (16)

Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory

Timeline

No history available yet.