ZeroHour

CVE-2023-49442

CVSS 3.1
9.8 critical
EPSS
39%p98
Published
()
Modified
Description

Deserialization of Untrusted Data in jeecgFormDemoController in JEECG 4.0 and earlier allows attackers to run arbitrary code via crafted POST request.

Vendors
jeecg
Products
jeecg
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.