CVE-2024-34740
CVE-2024-34740
Título es
CVE-2024-34740
Jue, 15/08/2024 – 22:15
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-34740
Descripción en
In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible arbitrary XML injection due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
16/08/2024
16/08/2024
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Referencias
Enviar en el boletín
Off
