An issue was discovered in ONAP APPC before Dublin. By using an exposed unprotected Jolokia interface, an unauthenticated attacker can read or overwrite an arbitrary file. All APPC setups are affected.
References
Link | Resource |
---|---|
https://jira.onap.org/browse/OJSI-63 | Exploit Patch Vendor Advisory |
https://jira.onap.org/browse/OJSI-63 | Exploit Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 04:22
Type | Values Removed | Values Added |
---|---|---|
References | () https://jira.onap.org/browse/OJSI-63 - Exploit, Patch, Vendor Advisory |
Information
Published : 2020-03-18 19:15
Updated : 2024-11-21 04:22
NVD link : CVE-2019-12124
Mitre link : CVE-2019-12124
CVE.ORG link : CVE-2019-12124
JSON object : View
Products Affected
onap
- open_network_automation_platform
CWE