A deserialization flaw was found in Apache Chainsaw versions prior to 2.1.0 which could lead to malicious code execution.
Base score: 9.8 Exploit score: 3.9 Impact score: 5.9
Base Score (vectoral): CVSS:3.1 - AV:N - AC:L - PR:N - UI:N - S:U - C:H - I:H - A:H
Base score: 6.8 Exploit score: 8.6 Impact score: 6.4
Base Score (vectoral): CVSS:2.0 - AV:N - AC:M - Au:N - C:P - I:P - A:P
Last Modified: Apr 8, 2022
cpe:2.3:a:apache:chainsaw:*:*:*:*:*:*:*:*
cpe:2.3:a:apache:log4j:*:*:*:*:*:*:*:*
cpe:2.3:a:qos:reload4j:*:*:*:*:*:*:*:*