Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2018-8088

org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before 1.8.0-beta2 allows remote attackers to bypass intended access restrictions via crafted data. EventData in the slf4j-ext module in QOS.CH SLF4J, has been fixed in SLF4J versions 1.7.26 later and in the 2.0.x series.

CVSS v3:

  • Severity: Critical
  • Score: 9.8
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/Au:N/C:P/I:P/A:P
Software From Fixed in
qos / slf4j 1.8.0-alpha1 1.8.0-alpha1.x
qos / slf4j 1.8.0-alpha2 1.8.0-alpha2.x
qos / slf4j 1.8.0-beta1 1.8.0-beta1.x
qos / slf4j 1.8.0-beta2 1.8.0-beta2.x
qos / slf4j - 1.7.26
redhat / jboss_enterprise_application_platform 7.1 7.1.x
redhat / jboss_enterprise_application_platform 6.0.0 6.0.0.x
redhat / jboss_enterprise_application_platform 6.4.0 6.4.0.x
redhat / virtualization 4.0 4.0.x
redhat / virtualization_host 4.0 4.0.x
redhat / enterprise_linux_desktop 7.0 7.0.x
redhat / enterprise_linux_workstation 7.0 7.0.x
redhat / enterprise_linux_server 7.0 7.0.x
redhat / enterprise_linux_server_aus 7.4 7.4.x
redhat / enterprise_linux_server_tus 7.4 7.4.x
redhat / enterprise_linux_eus 7.4 7.4.x
redhat / enterprise_linux_eus 7.5 7.5.x
redhat / enterprise_linux_server_tus 7.6 7.6.x
redhat / enterprise_linux_server_aus 7.6 7.6.x
redhat / enterprise_linux_eus 7.6 7.6.x
redhat / enterprise_linux_server_aus 7.7 7.7.x
redhat / enterprise_linux_server_tus 7.7 7.7.x
redhat / enterprise_linux_eus 7.7 7.7.x
oracle / utilities_framework 4.2.0.3.0 4.2.0.3.0.x
oracle / utilities_framework 4.3.0.2.0 4.3.0.2.0.x
oracle / utilities_framework 4.2.0.2.0 4.2.0.2.0.x
oracle / utilities_framework 4.3.0.3.0 4.3.0.3.0.x
oracle / utilities_framework 4.3.0.4.0 4.3.0.4.0.x
oracle / utilities_framework 4.3.0.5.0 4.3.0.5.0.x
oracle / utilities_framework 4.3.0.6.0 4.3.0.6.0.x
oracle / utilities_framework 4.4.0.0.0 4.4.0.0.0.x
oracle / goldengate_stream_analytics - 19.1.0.0.1
oracle / goldengate_application_adapters 12.3.2.1.0 12.3.2.1.0.x
org.slf4j / slf4j-ext - 1.7.26
org.slf4j / slf4j-ext 1.8.0-alpha0 1.8.0-beta4