Логотип exploitDog
bind:CVE-2021-23258
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-23258

Количество 2

Количество 2

nvd логотип

CVE-2021-23258

около 4 лет назад

Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans. SPEL Expression does not have security restrictions, which will cause attackers to execute arbitrary commands remotely (RCE).

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-58pg-75f2-3jxj

около 4 лет назад

Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans. SPEL Expression does not have security restrictions, which will cause attackers to execute arbitrary commands remotely (RCE).

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-23258

Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans. SPEL Expression does not have security restrictions, which will cause attackers to execute arbitrary commands remotely (RCE).

CVSS3: 4.2
0%
Низкий
около 4 лет назад
github логотип
GHSA-58pg-75f2-3jxj

Authenticated users with Administrator or Developer roles may execute OS commands by SPEL Expression in Spring beans. SPEL Expression does not have security restrictions, which will cause attackers to execute arbitrary commands remotely (RCE).

0%
Низкий
около 4 лет назад

Уязвимостей на страницу