Описание
Remote Code Execution in SCIMono
Impact
It is possible for attacker to inject and execute java expression and compromising the availability and integrity of the system.
Patches
The issue was fixed on 0.0.19 version
Пакеты
Наименование
com.sap.scimono:scimono-server
maven
Затронутые версииВерсия исправления
< 0.0.19
0.0.19
Связанные уязвимости
CVSS3: 9.1
nvd
больше 4 лет назад
In SCIMono before 0.0.19, it is possible for an attacker to inject and execute java expression compromising the availability and integrity of the system.