60
CVE-2021-42392
PoC —CVSS 3.1
9.8 critical
EPSS
63%p99
Published
()
Modified
Description
The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database. An attacker may pass a JNDI driver name and a URL leading to a LDAP or RMI servers, causing remote code execution. This can be exploited through various attack vectors, most notably through the H2 Console which leads to unauthenticated remote code execution.
- Vendors
- h2databasedebianoracle
- Products
- h2, debian linux, communications cloud native core policy
- Weakness
- CWE-502
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H