First published: Thu Nov 21 2019(Updated: )
eDeploy through at least 2014-10-14 has remote code execution due to eval() of untrusted data
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Edeploy | <=1.6.0 | |
Redhat Jboss Enterprise Web Server | =1.0.0 | |
debian/undefined |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3700 is a vulnerability in eDeploy that allows remote code execution.
CVE-2014-3700 has a severity rating of critical with a score of 9.8.
CVE-2014-3700 affects Redhat Edeploy version 1.6.0, Redhat Jboss Enterprise Web Server version 1.0.0, and Debian packages.
CVE-2014-3700 allows remote code execution through the use of eval() function with untrusted data.
You can find more information about CVE-2014-3700 at the following references: [Bugzilla Redhat](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-3700) and [Debian Security Tracker](https://security-tracker.debian.org/tracker/CVE-2014-3700).