Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hjv5-jxg5-79pp

Опубликовано: 25 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code via a crafted request to the console/heimdall endpoint

An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code via a crafted request to the console/heimdall endpoint

EPSS

Процентиль: 47%
0.006
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 9.8
nvd
26 дней назад

An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code via a crafted request to the console/heimdall endpoint

EPSS

Процентиль: 47%
0.006
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-502