Known Vulnerabilities for products from Odata4j Project
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Odata4j Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2016-11024 | odata4j 0.7.0 allows ExecuteJPQLQueryCommand.java SQL injection. NOTE: this product is apparently discontinued. | 9.8 - CRITICAL | 2020-03-30 | 2020-03-30 |
| CVE-2016-11023 | odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued. | 9.8 - CRITICAL | 2020-03-30 | 2020-03-30 |
| CVE-2014-0171 | XML external entity (XXE) vulnerability in StaxXMLFactoryProvider2 in Odata4j, as used in Red Hat JBoss Data Virtualization b... | 5 - MEDIUM | 2015-01-15 | 2020-03-26 |
Known software with vulnerabilities from Odata4j Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Odata4j Project | Odata4j | - |