← back
CVE-2018-1297

CVE-2018-1297

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 9.9%
exploitation probability
9.9%top 5% of all CVEs
observed exploitation
nono source reports it
When using Distributed Test only (RMI based), Apache JMeter 2.x and 3.x uses an unsecured RMI connection. This could allow an attacker to get Access to JMeterEngine and send unauthorized code.