A J Report 漏洞列表
共找到 1 个与 A J Report 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2024-7314: AJ-Report < 1.4.1 - Remote Code Execution POC
AJ-Report before version 1.4.1 is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitrary Java code on the victim server through script engine injection in the validation rules functionality.