forked from OWASP-Benchmark/BenchmarkJava
-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Description
📂 Vulnerable Library - commons-dbcp-1.4.jar
Commons Database Connection Pooling
Path to dependency file: /pom.xml
Path to vulnerable library: /home/wss-scanner/.m2/repository/commons-dbcp/commons-dbcp/1.4/commons-dbcp-1.4.jar
Findings
| Finding | Severity | 🎯 CVSS | Exploit Maturity | EPSS | Library | Type | Fixed in | Remediation Available | Reachability |
|---|---|---|---|---|---|---|---|---|---|
| CVE-853521-722872 | 🟣 Critical | 9.8 | N/A | N/A | commons-pool-1.5.4.jar | Transitive | N/A | ❌ |
Details
🟣CVE-853521-722872
Vulnerable Library - commons-pool-1.5.4.jar
Commons Object Pooling Library
Library home page: http://www.apache.org/
Path to dependency file: /pom.xml
Path to vulnerable library: /home/wss-scanner/.m2/repository/commons-pool/commons-pool/1.5.4/commons-pool-1.5.4.jar
Dependency Hierarchy:
- commons-dbcp-1.4.jar (Root Library)
- ❌ commons-pool-1.5.4.jar (Vulnerable Library)
Vulnerability Details
Created automatically by the test suite
Publish Date: Jun 07, 2010 05:12 PM
URL: CVE-853521-722872
Threat Assessment
Exploit Maturity:N/A
EPSS:N/A
Score: 9.8
Suggested Fix
Type: Upgrade version
Origin:
Release Date:
Fix Resolution :
Metadata
Metadata
Assignees
Labels
No labels