VYPR
High severity8.3NVD Advisory· Published Mar 19, 2025· Updated Jun 17, 2026

CVE-2024-55551

CVE-2024-55551

Description

An issue was discovered in Exasol JDBC driver before 24.2.1 (2024-12-10). Attackers can inject malicious parameters into the JDBC URL, triggering JNDI injection during the process when the JDBC Driver uses this URL to connect to the database. This can further lead to remote code execution.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:exasol:jdbc_driver:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:exasol:jdbc_driver:*:*:*:*:*:*:*:*range: <24.2.1
    • (no CPE)range: <24.2.1
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.