Record summary

CVE-2018-1000130 has a selected CVSS score of 8.1 (high); EIP currently links 1 Nuclei template.

Description

A JNDI Injection vulnerability exists in Jolokia agent version 1.3.7 in the proxy mode that allows a remote attacker to run arbitrary Java code on the server.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jan 3, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

2
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied
GitHub Advisory1.3.7 to < 1.5.0 · Fixed in 1.5.0affected

Nuclei templates

1
ProjectDiscoveryHIGHJolokia Agent - JNDI Code InjectionCVSS 8.1

Jolokia agent is vulnerable to a JNDI injection vulnerability that allows a remote attacker to run arbitrary Java code on the server when the agent is in proxy mode.

Impact

Successful exploitation of this vulnerability can lead to remote code execution, compromising the affected system.

Remediation

Apply the latest security patches or updates provided by the vendor to fix the vulnerability.

WeaknessesCWE-74
Authorsmilo2012
Template tagscve2018cvejolokiarcejndiproxyvkevvuln
CVSS vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:jolokia:webarchive_agent:1.3.7:*:*:*:*:*:*:*

Source: ProjectDiscovery

References

7