Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6c74-9v8c-c8ch

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

HP Business Service Management (BSM) 9.12 does not properly restrict the uploading of .war files, which allows remote attackers to execute arbitrary JSP code within the JBOSS Application Server component via a crafted request to TCP port 1098, 1099, or 4444.

HP Business Service Management (BSM) 9.12 does not properly restrict the uploading of .war files, which allows remote attackers to execute arbitrary JSP code within the JBOSS Application Server component via a crafted request to TCP port 1098, 1099, or 4444.

EPSS

Процентиль: 85%
0.02341
Низкий

Связанные уязвимости

nvd
больше 13 лет назад

HP Business Service Management (BSM) 9.12 does not properly restrict the uploading of .war files, which allows remote attackers to execute arbitrary JSP code within the JBOSS Application Server component via a crafted request to TCP port 1098, 1099, or 4444.

EPSS

Процентиль: 85%
0.02341
Низкий