CVE-2013-6469

JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java code via an MVFLEX Expression Language (MVEL) expression. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:jboss_fuse_service_works:6.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_overlord_run_time_governance:1.0:*:*:*:*:jbossas:*:*

History

21 Nov 2024, 01:59

Type Values Removed Values Added
References () http://secunia.com/advisories/57843 - Vendor Advisory () http://secunia.com/advisories/57843 - Vendor Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=1051279 - () https://bugzilla.redhat.com/show_bug.cgi?id=1051279 -

07 Nov 2023, 02:17

Type Values Removed Values Added
Summary JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java code via an MVFLEX Expression Language (MVEL) expression. NOTE: some of these details are obtained from third party information. JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java code via an MVFLEX Expression Language (MVEL) expression. NOTE: some of these details are obtained from third party information.

Information

Published : 2014-04-22 13:06

Updated : 2024-11-21 01:59


NVD link : CVE-2013-6469

Mitre link : CVE-2013-6469

CVE.ORG link : CVE-2013-6469


JSON object : View

Products Affected

redhat

  • jboss_overlord_run_time_governance
  • jboss_fuse_service_works
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')