Miggo Logo

CVE-2017-5929: QOS.ch Logback vulnerable to Deserialization of Untrusted Data

9.8

CVSS Score
3.0

Basic Information

EPSS Score
0.94467%
Published
6/7/2021
Updated
1/28/2023
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Package NameEcosystemVulnerable VersionsFirst Patched Version
ch.qos.logback:logback-classicmaven< 1.2.01.2.0
ch.qos.logback:logback-coremaven< 1.2.01.2.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

QOS.** Lo****k ***or* *.*.* **s * s*ri*liz*tion vuln*r**ility *****tin* t** So*k*tS*rv*r *n* S*rv*rSo*k*tR***iv*r *ompon*nts. T** R*mot*Str**m*pp*n**r*li*nt *l*ss in lo****k-*l*ssi* *n* t** So*k*tNo** *l*ss*s in lo****k-*l*ssi* *n* lo****k-****ss *ll

Reasoning

No *n*lysis *v*il**l*