Skip to content

GitLab

  • Menu
Projects Groups Snippets
    • Loading...
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in / Register
  • T ticket
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
  • Issues 1,809
    • Issues 1,809
    • List
    • Boards
    • Service Desk
    • Milestones
  • Merge requests 0
    • Merge requests 0
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Monitor
    • Monitor
    • Incidents
  • Packages & Registries
    • Packages & Registries
    • Package Registry
    • Infrastructure Registry
  • Analytics
    • Analytics
    • CI/CD
    • Repository
    • Value stream
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
Collapse sidebar
  • Administrator
  • ticket
  • Issues
  • #1510

Closed
Open
Created Nov 09, 2023 by Administrator@rootMaintainer

jackson-databind-2.8.11.3.jar|CVE-2018-14719

Created by: armorcodegithubpreprod[bot]

FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to execute arbitrary code by leveraging failure to block the blaze-ds-opt and blaze-ds-core classes from polymorphic deserialization. Vulnerable Software: cpe:2.3:a:fasterxml:jackson-databind:::::::: cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.0.2:::::::* cpe:2.3:a:oracle:primavera_unifier:::::::: cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.0.5:::::::* cpe:2.3:a:oracle:webcenter_portal:12.2.1.3.0:::::::* cpe:2.3:a:oracle:enterprise_manager_for_virtualization:13.2.2:::::::* cpe:2.3:a:oracle:banking_platform:2.5.0:::::::* cpe:2.3:a:oracle:retail_merchandising_system:15.0:::::::* cpe:2.3:a:oracle:banking_platform:2.6.0:::::::* cpe:2.3:a:oracle:retail_merchandising_system:16.0:::::::* cpe:2.3:a:oracle:communications_billing_and_revenue_management:7.5:::::::* cpe:2.3:a:oracle:jdeveloper:12.1.3.0.0:::::::* cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0:::::::* cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.0.4:::::::* cpe:2.3:a:oracle:banking_platform:2.6.1:::::::* cpe:2.3:a:oracle:enterprise_manager_for_virtualization:13.3.1:::::::* cpe:2.3:a:oracle:primavera_unifier:18.8:::::::* cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.0.3:::::::* cpe:2.3:a:oracle:primavera_unifier:16.1:::::::* cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.0.6:::::::* cpe:2.3:a:oracle:enterprise_manager_for_virtualization:13.2.3:::::::* cpe:2.3:a:oracle:banking_platform:2.6.2:::::::* cpe:2.3:a:oracle:jdeveloper:12.2.1.3.0:::::::* cpe:2.3:a:oracle:primavera_unifier:16.2:::::::* cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.0.7:::::::*

File Path: \Profiles\ptrovatelli.m2\repository\com\fasterxml\jackson\core\jackson-databind\2.8.11.3\jackson-databind-2.8.11.3.jar

Finding Id : 33449706

Assignee
Assign to
Time tracking