CVE-2024-23683
HIGHDescription
Artemis Java Test Sandbox versions less than 1.7.6 are vulnerable to a sandbox escape when an attacker crafts a special subclass of InvocationTargetException. An attacker can abuse this issue to execute arbitrary Java when a victim executes the supposedly sandboxed code.
Is your site exposed to CVE-2024-23683?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ls1intum | artemis_java_test_sandbox |
References
Advisories & Patches
Exploits
Other References
Frequently Asked Questions
What is CVE-2024-23683? +
How severe is CVE-2024-23683? +
What products are affected by CVE-2024-23683? +
How do I check if I'm vulnerable to CVE-2024-23683? +
Related Vulnerabilities
Enabled IP Forwarding feature in B&R Automation Runtime versions before 6.0.2 may allow remote attack-ers to compromise network security by …
When using the Grafana Snowflake Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple users are using …
When using the Grafana Databricks Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple users are using …
In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write …
A security issue was discovered in Kubernetes where under certain conditions, an unauthenticated attacker with access to the pod network …
lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source_over.