Skip to main content

CVE-2022-41828

8.1
HIGHCVSS v3.1 Base Score
9.64%
LOW RiskEPSS (93rd percentile)

In Amazon AWS Redshift JDBC Driver (aka amazon-redshift-jdbc-driver or redshift-jdbc42) before 2.1.0.8, the Object Factory does not check the class type when instantiating an object from a class name.

Published: 9/29/2022
Modified: 5/20/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.1HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Score (Exploitation Probability)

9.64%LOW Exploitation Risk
93rd percentile

This vulnerability has a 9.64% probability of being exploited in the next 30 days, ranking higher than 93% of all scored CVEs.

Related Vulnerabilities