Exadel records
3 published records for vendor exadel.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-502 Deserialization of Untrusted Data1
- CWE-611 Improper Restriction of XML External Entity Reference1
- CWE-913 Improper Control of Dynamically-Managed Code Resources1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2017-3202No exploit | The implementation of Action Message Format (AMF3) deserializers in Flamingo amf-serializer by Exadel, version 2.2.0, may allow instantiation of arbitrary classexadel · flamingo · CWE-913 | Critical9.8 | — | 8.2% | Jun 11, 2018 |
40Plan | CVE-2017-3206No exploit | The Action Message Format (AMF3) deserializers used by Flamingo amf-serializer by Exadel, version 2.2.0, allows external entity references (XXEs) from XML documexadel · flamingo · CWE-611 | Critical9.8 | — | 3.7% | Jun 11, 2018 |
34Monitor | CVE-2017-3201No exploit | Flamingo amf-serializer by Exadel, version 2.2.0, Action Message Format (AMF3) Java implementation is vulnerable to insecure deserializationexadel · flamingo amf-serializer · CWE-502 | High8.1 | — | 5.4% | Jun 11, 2018 |
- CVE-2017-320241Plan
The implementation of Action Message Format (AMF3) deserializers in Flamingo amf-serializer by Exadel, version 2.2.0, may allow instantiation of arbitrary class
CriticalCVSS 9.8No exploitEPSS 8%exadel · flamingoJun 11, 2018
- CVE-2017-320640Plan
The Action Message Format (AMF3) deserializers used by Flamingo amf-serializer by Exadel, version 2.2.0, allows external entity references (XXEs) from XML docum
CriticalCVSS 9.8No exploitEPSS 4%exadel · flamingoJun 11, 2018
- CVE-2017-320134Monitor
Flamingo amf-serializer by Exadel, version 2.2.0, Action Message Format (AMF3) Java implementation is vulnerable to insecure deserialization
HighCVSS 8.1No exploitEPSS 5%exadel · flamingo amf-serializerJun 11, 2018