CVE-2018-14721
CRITICAL
10.0
CVSS Severity Score
Vulnerability Description
FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to conduct server-side request forgery (SSRF) attacks by leveraging failure to block the axis2-jaxws class from polymorphic deserialization.
Affected Platforms (CPE)
π¦
Fasterxml
Jackson Databind
>= 2.6.0 and < 2.6.7.2π¦
Fasterxml
Jackson Databind
>= 2.7.0 and < 2.7.9.5π¦
Fasterxml
Jackson Databind
>= 2.8.0 and < 2.8.11.3π¦
Fasterxml
Jackson Databind
>= 2.9.0 and < 2.9.7π¦
Fasterxml
Jackson Databind
= 2.7.0π¦
Fasterxml
Jackson Databind
= 2.7.0π¦
Fasterxml
Jackson Databind
= 2.7.0π¦
Fasterxml
Jackson Databind
= 2.8.0π¦
Fasterxml
Jackson Databind
= 2.8.0π¦
Fasterxml
Jackson Databind
= 2.9.0π¦
Fasterxml
Jackson Databind
= 2.9.0π¦
Fasterxml
Jackson Databind
= 2.9.0π¦
Fasterxml
Jackson Databind
= 2.9.0π»
Debian
Debian Linux
= 8.0π»
Debian
Debian Linux
= 9.0π¦
Oracle
Banking Platform
= 2.5.0π¦
Oracle
Banking Platform
= 2.6.0π¦
Oracle
Banking Platform
= 2.6.1π¦
Oracle
Banking Platform
= 2.6.2π¦
Oracle
Communications Billing And Revenue Management
= 7.5π¦
Oracle
Communications Billing And Revenue Management
= 12.0π¦
Oracle
Enterprise Manager For Virtualization
= 13.2.2π¦
Oracle
Enterprise Manager For Virtualization
= 13.2.3π¦
Oracle
Enterprise Manager For Virtualization
= 13.3.1π¦
Oracle
Financial Services Analytical Applications Infrastructure
= 8.0.2π¦
Oracle
Financial Services Analytical Applications Infrastructure
= 8.0.3π¦
Oracle
Financial Services Analytical Applications Infrastructure
= 8.0.4π¦
Oracle
Financial Services Analytical Applications Infrastructure
= 8.0.5π¦
Oracle
Financial Services Analytical Applications Infrastructure
= 8.0.6π¦
Oracle
Financial Services Analytical Applications Infrastructure
= 8.0.7π¦
Oracle
Jdeveloper
= 12.1.3.0.0π¦
Oracle
Jdeveloper
= 12.2.1.3.0π¦
Oracle
Primavera Unifier
>= 17.1 and <= 17.12π¦
Oracle
Primavera Unifier
= 16.1π¦
Oracle
Primavera Unifier
= 16.2π¦
Oracle
Primavera Unifier
= 18.8π¦
Oracle
Retail Merchandising System
= 15.0π¦
Oracle
Retail Merchandising System
= 16.0π¦
Oracle
Webcenter Portal
= 12.2.1.3.0π¦
Redhat
Jboss Enterprise Application Platform
= 7.2.0π¦
Redhat
