http://mirrors.aliyun.com/alinux/3/cve/alinux3-sa-20220160.xml
Severity: Critical
ID: 236535
File Name: alinux3_sa_2022-0160.nasl
Version: 1.1
Type: local
Published: 5/14/2025
Updated: 5/14/2025
Supported Sensors: Nessus
Risk Factor: Medium
Score: 5.9
Risk Factor: High
Base Score: 7.5
Temporal Score: 5.5
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS Score Source: CVE-2022-29599
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 8.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-utils-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-sec-dispatcher-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-lang3, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:httpcomponents-core, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j-jcl, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-cli-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-classworlds-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j-sources, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:sisu-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-grapher, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-bom, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-throwingproviders, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:aopalliance-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:aopalliance, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-interpolation, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-jndi, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j-manual, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:google-guice-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-sec-dispatcher, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-utils, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:atinject-tck, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:sisu, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guava-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-containers-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-lib, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-wagon, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j-jdk14, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:geronimo-annotation, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guava-testlib, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jul-to-slf4j, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jansi, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-codec-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-lang3-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:httpcomponents-client-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:log4j-over-slf4j, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j-log4j12, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-openjdk11, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:google-guice, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:cdi-api, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:httpcomponents-client, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-wagon-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-openjdk17, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:geronimo-annotation-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-containers, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-parent, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-interpolation-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:cdi-api-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jansi-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:atinject, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-openjdk8, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jsoup-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jsr-305-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-cipher, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-cli, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:slf4j-javadoc, cpe:/o:alibabacloud:alibaba_cloud_linux_3, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-jmx, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-assistedinject, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:httpcomponents-core-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jsr-305, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-io-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-codec, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jcl-over-slf4j, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guava, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-multibindings, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-classworlds, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-containers-container-default, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:atinject-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-resolver, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-extensions, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-containers-component-metadata, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:jsoup, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:maven-resolver-javadoc, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:apache-commons-io, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:guice-servlet, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-containers-component-annotations, p-cpe:/a:alibabacloud:alibaba_cloud_linux_3:plexus-cipher-javadoc
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Alibaba/release, Host/Alibaba/rpm-list
Exploit Ease: No known exploits are available
Patch Publication Date: 9/8/2022
Vulnerability Publication Date: 12/2/2020
CVE: CVE-2020-13956, CVE-2022-29599