Check Point Reference: | CPAI-2014-1155 |
Date Published: | 22 Oct 2014 |
Severity: | High |
Last Updated: | Wednesday 22 October, 2014 |
Source: | Apache |
Industry Reference: | CVE-2014-0003 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Apache Software Foundation Camel 2.11.0 to 2.11.3 Apache Software Foundation Camel 2.12.0 to 2.12.2 |
Vulnerability Description | A code execution vulnerability has been reported in Apache Camel. A remote, unauthenticated attacker can exploit this vulnerability by sending a specially crafted XML message to the vulnerable server. Successful exploitation could result in the execution of arbitrary Java code. |
SmartView Tracker will log the following entries:
Attack Name: Web Server Enforcement Violation.
Attack Information: Apache Camel XSLT Component Java Code Execution