Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-30128
Apache OFBiz has unsafe deserialization prior to 17.12.07 version
Exploit prediction scoring system (EPSS) score
EPSS Score
0.934
EPSS Ranking
99.8%
CVSS Severity
CVSS v3 Score
9.8
CVSS v2 Score
10.0
References
http://www.openwall.com/lists/oss-security/2021/04/27/5
https://lists.apache.org/thread.html/r078351a876ed284ba667b33aba29428d7308a5bd4df78f14a3df6661%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r108a964764b8bd21ebd32ccd4f51c183ee80a251c105b849154a8e9d%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rab718cfe6468085d7560c0c1ae816841e175886199f42e36efb8d735%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cannounce.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cdev.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cdev.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cuser.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb82f41de3c44bb644632531f79649046ca76afeab25a2bdb9991ab84%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rbe512e5ccd6b11169c6379daa1234bc805f3d53c5a38224e956295ce%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rbe8439b26a71fc3b429aa793c65dcc4a6e349bc7bb5010746a74fa1d%40%3Ccommits.ofbiz.apache.org%3E
http://www.openwall.com/lists/oss-security/2021/04/27/5
https://lists.apache.org/thread.html/r078351a876ed284ba667b33aba29428d7308a5bd4df78f14a3df6661%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r108a964764b8bd21ebd32ccd4f51c183ee80a251c105b849154a8e9d%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rab718cfe6468085d7560c0c1ae816841e175886199f42e36efb8d735%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cannounce.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cdev.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cdev.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb3f5cd65f3ddce9b9eb4d6ea6e2919933f0f89b15953769d11003743%40%3Cuser.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rb82f41de3c44bb644632531f79649046ca76afeab25a2bdb9991ab84%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rbe512e5ccd6b11169c6379daa1234bc805f3d53c5a38224e956295ce%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rbe8439b26a71fc3b429aa793c65dcc4a6e349bc7bb5010746a74fa1d%40%3Ccommits.ofbiz.apache.org%3E
Products affected by CVE-2021-30128
Apache
»
Ofbiz
»
Version:
N/A
cpe:2.3:a:apache:ofbiz:-
Apache
»
Ofbiz
»
Version:
09.04
cpe:2.3:a:apache:ofbiz:09.04
Apache
»
Ofbiz
»
Version:
09.04.01
cpe:2.3:a:apache:ofbiz:09.04.01
Apache
»
Ofbiz
»
Version:
10.04
cpe:2.3:a:apache:ofbiz:10.04
Apache
»
Ofbiz
»
Version:
10.04.01
cpe:2.3:a:apache:ofbiz:10.04.01
Apache
»
Ofbiz
»
Version:
10.04.02
cpe:2.3:a:apache:ofbiz:10.04.02
Apache
»
Ofbiz
»
Version:
10.04.03
cpe:2.3:a:apache:ofbiz:10.04.03
Apache
»
Ofbiz
»
Version:
10.04.04
cpe:2.3:a:apache:ofbiz:10.04.04
Apache
»
Ofbiz
»
Version:
10.04.05
cpe:2.3:a:apache:ofbiz:10.04.05
Apache
»
Ofbiz
»
Version:
10.04.06
cpe:2.3:a:apache:ofbiz:10.04.06
Apache
»
Ofbiz
»
Version:
11.04
cpe:2.3:a:apache:ofbiz:11.04
Apache
»
Ofbiz
»
Version:
11.04.01
cpe:2.3:a:apache:ofbiz:11.04.01
Apache
»
Ofbiz
»
Version:
11.04.02
cpe:2.3:a:apache:ofbiz:11.04.02
Apache
»
Ofbiz
»
Version:
11.04.03
cpe:2.3:a:apache:ofbiz:11.04.03
Apache
»
Ofbiz
»
Version:
11.04.04
cpe:2.3:a:apache:ofbiz:11.04.04
Apache
»
Ofbiz
»
Version:
11.04.05
cpe:2.3:a:apache:ofbiz:11.04.05
Apache
»
Ofbiz
»
Version:
11.04.06
cpe:2.3:a:apache:ofbiz:11.04.06
Apache
»
Ofbiz
»
Version:
12.04
cpe:2.3:a:apache:ofbiz:12.04
Apache
»
Ofbiz
»
Version:
12.04.01
cpe:2.3:a:apache:ofbiz:12.04.01
Apache
»
Ofbiz
»
Version:
12.04.02
cpe:2.3:a:apache:ofbiz:12.04.02
Apache
»
Ofbiz
»
Version:
12.04.03
cpe:2.3:a:apache:ofbiz:12.04.03
Apache
»
Ofbiz
»
Version:
12.04.04
cpe:2.3:a:apache:ofbiz:12.04.04
Apache
»
Ofbiz
»
Version:
12.04.05
cpe:2.3:a:apache:ofbiz:12.04.05
Apache
»
Ofbiz
»
Version:
12.04.06
cpe:2.3:a:apache:ofbiz:12.04.06
Apache
»
Ofbiz
»
Version:
13.07
cpe:2.3:a:apache:ofbiz:13.07
Apache
»
Ofbiz
»
Version:
13.07.01
cpe:2.3:a:apache:ofbiz:13.07.01
Apache
»
Ofbiz
»
Version:
13.07.02
cpe:2.3:a:apache:ofbiz:13.07.02
Apache
»
Ofbiz
»
Version:
13.07.03
cpe:2.3:a:apache:ofbiz:13.07.03
Apache
»
Ofbiz
»
Version:
16.11.01
cpe:2.3:a:apache:ofbiz:16.11.01
Apache
»
Ofbiz
»
Version:
16.11.02
cpe:2.3:a:apache:ofbiz:16.11.02
Apache
»
Ofbiz
»
Version:
16.11.03
cpe:2.3:a:apache:ofbiz:16.11.03
Apache
»
Ofbiz
»
Version:
16.11.04
cpe:2.3:a:apache:ofbiz:16.11.04
Apache
»
Ofbiz
»
Version:
16.11.05
cpe:2.3:a:apache:ofbiz:16.11.05
Apache
»
Ofbiz
»
Version:
16.11.06
cpe:2.3:a:apache:ofbiz:16.11.06
Apache
»
Ofbiz
»
Version:
16.11.07
cpe:2.3:a:apache:ofbiz:16.11.07
Apache
»
Ofbiz
»
Version:
17.12.01
cpe:2.3:a:apache:ofbiz:17.12.01
Apache
»
Ofbiz
»
Version:
17.12.03
cpe:2.3:a:apache:ofbiz:17.12.03
Apache
»
Ofbiz
»
Version:
17.12.04
cpe:2.3:a:apache:ofbiz:17.12.04
Apache
»
Ofbiz
»
Version:
17.12.05
cpe:2.3:a:apache:ofbiz:17.12.05
Apache
»
Ofbiz
»
Version:
17.12.06
cpe:2.3:a:apache:ofbiz:17.12.06
Apache
»
Ofbiz
»
Version:
9.04
cpe:2.3:a:apache:ofbiz:9.04
Apache
»
Ofbiz
»
Version:
9.04.01
cpe:2.3:a:apache:ofbiz:9.04.01
Apache
»
Ofbiz
»
Version:
9.04.02
cpe:2.3:a:apache:ofbiz:9.04.02
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved