CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache.
CVE
CVE-2018-1297
Severity
CRITICAL
CVSS
9.8
EPSS
9.91%
Apache
Original NVD Description
When using Distributed Test only (RMI based), Apache JMeter 2.x and 3.x uses an unsecured RMI connection. This could allow an attacker to get Access to JMeterEngine and send unauthorized code.
Related CVEs
Other vulnerabilities affecting the same vendor(s)