CVE-2015-6420
Insecure Deserialization in Apache Commons Collection
Description
Serialized-object interfaces in Java applications using the Apache Commons Collections (ACC) library may allow remote attackers to execute arbitrary commands via a crafted serialized Java object.
Base CVSS
7.8
EPSS Score
13.77%
Introduced Version
0
Fix Available
3.2.2,4.1
Available Patches
Package
CVEs Fixed
Lines of Code Changed