Описание
Unrestricted Upload of File with Dangerous Type vulnerability in Apache OFBiz.
This issue affects Apache OFBiz: before 24.09.03.
Users are recommended to upgrade to version 24.09.03, which fixes the issue.
Ссылки
- Issue Tracking
- Mailing ListVendor Advisory
- Product
- Release Notes
- Vendor Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 24.09.03 (исключая)
cpe:2.3:a:apache:ofbiz:*:*:*:*:*:*:*:*
EPSS
Процентиль: 37%
0.00161
Низкий
7.3 High
CVSS3
Дефекты
CWE-434
Связанные уязвимости
CVSS3: 7.3
github
3 месяца назад
Unrestricted Upload of File with Dangerous Type vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 24.09.03. Users are recommended to upgrade to version 24.09.03, which fixes the issue.
EPSS
Процентиль: 37%
0.00161
Низкий
7.3 High
CVSS3
Дефекты
CWE-434