Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-6481


A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an attacker to mount a Denial-Of-Service attack by sending poisoned data.


Published

2023-12-04T09:15:37.250

Last Modified

2024-11-21T08:43:56.147

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.1 (HIGH)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application qos logback 1.2.12 Yes
Application qos logback 1.3.13 Yes
Application qos logback 1.4.13 Yes

References