Showing 1 vulnerability on this page for JDBC driver

Signals CISA KEV Ransomware Nuclei
Exasol vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

An issue was discovered in Exasol JDBC driver before 24.2.1 (2024-12-10). Attackers can inject malicious parameters into the JDBC URL, triggering JNDI injection during the process when the JDBC Driver uses this URL to connect to the database. This can further lead to remote code execution.

CWE-471CWE-94Mar 19, 2025
CVSS8.3v3.1EPSS0.583%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX