org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before 1.8.0-beta2 allows remote attackers to bypass intended access restrictions via crafted data. EventData in the slf4j-ext module in QOS.CH SLF4J, has been fixed in SLF4J versions 1.7.26 later and in the 2.0.x series.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Information
Published : 2018-03-20 09:29
Updated : 2022-01-31 11:15
NVD link : CVE-2018-8088
Mitre link : CVE-2018-8088
JSON object : View
CWE
Products Affected
qos
- slf4j
redhat
- enterprise_linux_desktop
- enterprise_linux
- jboss_enterprise_application_platform
- virtualization
- enterprise_linux_server_aus
- enterprise_linux_workstation
- enterprise_linux_server_tus
- virtualization_host
- enterprise_linux_server
- enterprise_linux_eus
oracle
- goldengate_stream_analytics
- goldengate_application_adapters
- utilities_framework