← All CVEs

CVE-2020-11971

high · 7.5

Apache Camel's JMX is vulnerable to Rebind Flaw. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.x, 3.0.0 up to 3.1.0 is affected. Users should upgrade to 3.2.0.

7.5
CVSS
14.0%
EPSS (exploit prob.)
96th
EPSS percentile
2020-05-14
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected products

VendorProductAffected versions
apachecamel>= 2.22.0, <= 3.1.0
oraclecommunications_diameter_intelligence_hub>= 8.0.0, <= 8.1.0
oraclecommunications_diameter_intelligence_hub>= 8.2.0, <= 8.2.3
oraclecommunications_diameter_signaling_router>= 8.0.0, <= 8.2.2
oracleenterprise_manager_base_platform13.3.0.0
oracleenterprise_manager_base_platform13.4.0.0
oracleflexcube_private_banking12.0.0
oracleflexcube_private_banking12.1.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2020-11971