Логотип exploitDog
bind:CVE-2022-34267
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-34267

Количество 2

Количество 2

nvd логотип

CVE-2022-34267

около 2 лет назад

An issue was discovered in RWS WorldServer before 11.7.3. Adding a token parameter with the value of 02 bypasses all authentication requirements. Arbitrary Java code can be uploaded and executed via a .jar archive to the ws-api/v2/customizations/api endpoint.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-84m5-wq3j-47c4

около 2 лет назад

An issue was discovered in RWS WorldServer before 11.7.3. Adding a token parameter with the value of 02 bypasses all authentication requirements. Arbitrary Java code can be uploaded and executed via a .jar archive to the ws-api/v2/customizations/api endpoint.

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-34267

An issue was discovered in RWS WorldServer before 11.7.3. Adding a token parameter with the value of 02 bypasses all authentication requirements. Arbitrary Java code can be uploaded and executed via a .jar archive to the ws-api/v2/customizations/api endpoint.

CVSS3: 9.8
74%
Высокий
около 2 лет назад
github логотип
GHSA-84m5-wq3j-47c4

An issue was discovered in RWS WorldServer before 11.7.3. Adding a token parameter with the value of 02 bypasses all authentication requirements. Arbitrary Java code can be uploaded and executed via a .jar archive to the ws-api/v2/customizations/api endpoint.

CVSS3: 9.8
74%
Высокий
около 2 лет назад

Уязвимостей на страницу