Description
Skyscreamer Open Source Nevado JMS v1.3.2 does not perform security checks when receiving messages. This allows attackers to execute arbitrary commands via supplying crafted data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1493 | Skyscreamer Open Source Nevado JMS v1.3.2 does not perform security checks when receiving messages. This allows attackers to execute arbitrary commands via supplying crafted data. |
Github GHSA |
GHSA-7gm3-mwjw-j53w | Command injection in nevado-jms |
References
History
Fri, 17 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-17T17:48:01.118Z
Reserved: 2023-04-29T00:00:00.000Z
Link: CVE-2023-31826
Updated: 2024-08-02T14:56:35.675Z
Status : Modified
Published: 2023-05-23T01:15:10.127
Modified: 2025-01-17T18:15:24.380
Link: CVE-2023-31826
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA