CVE-2021-45968
An issue was discovered in xmppserver jar in the XMPP Server component of the JIve platform, as used in Pascom Cloud Phone System before 7.20.x (and in other products). An endpoint in the backend Tomcat server of the Pascom allows SSRF, a related issue to CVE-2019-18394.
- Affected products
- Apache Tomcat
- Jivesoftware Jive
- All versions
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 10.7% (95th percentile)
- Weakness
- CWE-918
- NVD status
- Modified
- Published
- 2022-03-18
CVE-2021-45968 at NVD
No indexed exploits for CVE-2021-45968 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2021-45968 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.