Source |
The Hacker News |
Identifiant |
3936207 |
Date de publication |
2022-01-07 01:31:46 (vue: 2022-01-07 10:06:15) |
Titre |
Log4Shell-like Critical RCE Flaw Discovered in H2 Database Console |
Texte |
Researchers have disclosed a security flaw affecting H2 database consoles that could result in remote code execution in a manner that echoes the Log4j "Log4Shell" vulnerability that came to light last month.
The issue, tracked as CVE-2021-42392, is the " first critical issue published since Log4Shell, on a component other than Log4j, that exploits the same root cause of the Log4Shell |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 42392 affecting as cve came cause code component console consoles could critical database disclosed discovered echoes execution exploits first flaw have issue last light like log4j log4shell manner month other published rce remote researchers result root same security since than tracked vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|