Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4xmq-9x3w-xpvr

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Apache Open For Business Project (aka OFBiz) 10.04.01 through 10.04.05, 11.04.01 through 11.04.02, and 12.04.01 allows remote attackers to execute arbitrary Unified Expression Language (UEL) functions via JUEL metacharacters in unspecified parameters, related to nested expressions.

Apache Open For Business Project (aka OFBiz) 10.04.01 through 10.04.05, 11.04.01 through 11.04.02, and 12.04.01 allows remote attackers to execute arbitrary Unified Expression Language (UEL) functions via JUEL metacharacters in unspecified parameters, related to nested expressions.

EPSS

Процентиль: 94%
0.12628
Средний

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 12 лет назад

Apache Open For Business Project (aka OFBiz) 10.04.01 through 10.04.05, 11.04.01 through 11.04.02, and 12.04.01 allows remote attackers to execute arbitrary Unified Expression Language (UEL) functions via JUEL metacharacters in unspecified parameters, related to nested expressions.

EPSS

Процентиль: 94%
0.12628
Средний

Дефекты

CWE-20