PT-2023-29265 · Unknown · Jeecgboot Jimureport

Keecth

·

Published

2023-08-21

·

Updated

2024-05-17

·

CVE-2023-4450

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions jeecgboot JimuReport versions up to 1.6.0
Description A critical issue was found in the Template Handler component, allowing for remote injection attacks. The exploit has been disclosed publicly.
Recommendations For jeecgboot JimuReport versions up to 1.6.0, upgrade to version 1.6.1 to address this issue.

Exploit

Fix

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-4450

Affected Products

Jeecgboot Jimureport