Apache CouchDB JSON Remote Privilege Escalation (CVE-2017-12635)

A privilege escalation vulnerability exists in CouchDB. The vulnerability is due to a discrepancy between the behaviour of the Erlang and JavaScript JSON parsers used within CouchDB. A remote, unauthenticated attacker could exploit this vulnerability by sending a crafted HTTP request to a vulnerable server.

from Check Point Update Services Advisories http://ift.tt/2nlkTqY

No comments:

Post a Comment

Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL Sideloading

Cybersecurity researchers have uncovered a new phishing campaign that exploits social media private messages to propagate malicious payloads...