CVE-2024-6644

Source
https://cve.org/CVERecord?id=CVE-2024-6644
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-6644.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-6644
Published
2024-07-10T16:31:04.565Z
Modified
2026-07-15T01:48:52.894787918Z
Severity
  • 5.3 (Medium) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N CVSS Calculator
Summary
zmops ArgusDBM AviatorScript CalculateAlarm.java getDefaultClassLoader deserialization
Details

A vulnerability was found in zmops ArgusDBM up to 0.1.0. It has been classified as critical. Affected is the function getDefaultClassLoader of the file CalculateAlarm.java of the component AviatorScript Handler. The manipulation leads to deserialization. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-271050 is the identifier assigned to this vulnerability.

Database specific
{
    "cwe_ids": [
        "CWE-502"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/6xxx/CVE-2024-6644.json",
    "cna_assigner": "VulDB"
}
References

Affected packages

Git / github.com/zmops/argusdbm

Affected ranges

Type
GIT
Repo
https://github.com/zmops/argusdbm
Events
Database specific
{
    "source": "AFFECTED_FIELD",
    "extracted_events": [
        {
            "introduced": "0.1"
        },
        {
            "last_affected": "0.1"
        }
    ]
}

Affected versions

0.*
0.1
v0.*
v0.1.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-6644.json"