Логотип exploitDog
bind:CVE-2021-30181
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-30181

Количество 2

Количество 2

nvd логотип

CVE-2021-30181

больше 4 лет назад

Apache Dubbo prior to 2.6.9 and 2.7.9 supports Script routing which will enable a customer to route the request to the right server. These rules are used by the customers when making a request in order to find the right endpoint. When parsing these rules, Dubbo customers use ScriptEngine and run the rule provided by the script which by default may enable executing arbitrary code.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-qmfc-6www-fjqw

почти 4 года назад

Code injection in Apache Dubbo

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-30181

Apache Dubbo prior to 2.6.9 and 2.7.9 supports Script routing which will enable a customer to route the request to the right server. These rules are used by the customers when making a request in order to find the right endpoint. When parsing these rules, Dubbo customers use ScriptEngine and run the rule provided by the script which by default may enable executing arbitrary code.

CVSS3: 9.8
4%
Низкий
больше 4 лет назад
github логотип
GHSA-qmfc-6www-fjqw

Code injection in Apache Dubbo

CVSS3: 9.8
4%
Низкий
почти 4 года назад

Уязвимостей на страницу