RHSA-2018:2669Vendor advisory
https://access.redhat.com/errata/RHSA-2018:2669 CVE-2018-1000130
HIGHNuclei
Injection in Jolokia agent
Record summary
CVE-2018-1000130 has a selected CVSS score of 8.1 (high); EIP currently links 1 Nuclei template.
Description
A JNDI Injection vulnerability exists in Jolokia agent version 1.3.7 in the proxy mode that allows a remote attacker to run arbitrary Java code on the server.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Jan 3, 2024 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
webarchive_agentBrowse jolokia / webarchive_agent | VulnCheck | Version data not supplied | |
org.jolokia:jolokia-coreBrowse Maven / org.jolokia:jolokia-core | GitHub Advisory | 1.3.7 to < 1.5.0 · Fixed in 1.5.0 | affected |
Nuclei templates
1ProjectDiscoveryHIGHJolokia Agent - JNDI Code InjectionCVSS 8.1
Jolokia agent is vulnerable to a JNDI injection vulnerability that allows a remote attacker to run arbitrary Java code on the server when the agent is in proxy mode.
Impact
Successful exploitation of this vulnerability can lead to remote code execution, compromising the affected system.
Remediation
Apply the latest security patches or updates provided by the vendor to fix the vulnerability.
WeaknessesCWE-74
Authorsmilo2012
Template tagscve2018cvejolokiarcejndiproxyvkevvuln
CVSS vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:jolokia:webarchive_agent:1.3.7:*:*:*:*:*:*:*
https://jolokia.org/#Security_fixes_with_1.5.0 https://access.redhat.com/errata/RHSA-2018:2669 https://nvd.nist.gov/vuln/detail/CVE-2018-1000130 https://github.com/ARPSyndicate/cvemon https://github.com/SexyBeast233/SecBooks
Source: ProjectDiscovery
References
7github.com
https://github.com/rhuss/jolokia github.com
https://github.com/rhuss/jolokia/commit/1b360b8889f0ed51165a8d1ac55dd8e0aa2dfd4a github.com
https://github.com/rhuss/jolokia/commit/fd7b93da30c61a45bac10d8b311f1b79a74910f5 github.com
https://github.com/rhuss/jolokia/releases/tag/v1.5.0 jolokia.orgConfirmation
https://jolokia.org/ nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-1000130