[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:117118
Core part of Jackson that defines Streaming API as well as basic shared abstractions.

oval:org.secpod.oval:def:117119
Core annotations used for value types, used by Jackson data-binding package.

oval:org.secpod.oval:def:117125
A "bill of materials" POM for Jackson dependencies.

oval:org.secpod.oval:def:117126
The general-purpose data-binding functionality and tree-model for Jackson Data Processor. It builds on core streaming parser/generator package, and uses Jackson Annotations for configuration.

oval:org.secpod.oval:def:117124
Core annotations used for value types, used by Jackson data-binding package.

oval:org.secpod.oval:def:117121
The general-purpose data-binding functionality and tree-model for Jackson Data Processor. It builds on core streaming parser/generator package, and uses Jackson Annotations for configuration.

oval:org.secpod.oval:def:117122
A "bill of materials" POM for Jackson dependencies.

oval:org.secpod.oval:def:117120
Core part of Jackson that defines Streaming API as well as basic shared abstractions.

oval:org.secpod.oval:def:59580
It was discovered that libjackson2-databind-java, a Java library used to parse JSON and other data formats, did not properly validate user input before attempting deserialization. This allowed an attacker providing maliciously crafted input to perform code execution, or read arbitrary files on the s ...

oval:org.secpod.oval:def:604554
It was discovered that libjackson2-databind-java, a Java library used to parse JSON and other data formats, did not properly validate user input before attempting deserialization. This allowed an attacker providing maliciously crafted input to perform code execution, or read arbitrary files on the s ...

oval:org.secpod.oval:def:69914
It was discovered that libjackson2-databind-java, a Java library used to parse JSON and other data formats, did not properly validate user input before attempting deserialization. This allowed an attacker providing maliciously crafted input to perform code execution, or read arbitrary files on the s ...

CPE    5
cpe:/o:debian:debian_linux:9.0
cpe:/a:oracle:jd_edwards_enterpriseone_tools:9.2
cpe:/o:debian:debian_linux:8.0
cpe:/a:fasterxml:jackson-databind
...
CWE    1
CWE-502
*CVE
CVE-2019-14439

© SecPod Technologies