Security Advisory
CVE-2014-0792
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code via unspecified vectors related to unmarshalling of unintended Object types.