CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache, Java. It may be remotely exploitable.
CVE
CVE-2015-5344
Severity
CRITICAL
CVSS
9.8
EPSS
7.12%
Apache Java
Original NVD Description
The camel-xstream component in Apache Camel before 2.15.5 and 2.16.x before 2.16.1 allow remote attackers to execute arbitrary commands via a crafted serialized Java object in an HTTP request.