[email protected] – FasterXML jackson-databind: privilege escalation via XaPooledConnectionFactory, analyzed on 23/03/2020

CERT-LatestNews ThreatsCybercrime VulnerabilitiesAll VulnerabilitiesDBMS
Synthesis of the vulnerability An attacker can bypass restrictions via XaPooledConnectionFactory of FasterXML jackson-databind, in order to escalate his privileges. Vulnerable software:Severity of this announce: 2/4. Creation date: 23/03/2020. Références of this computer vulnerability:, VIGILANCE-VUL-31849.