Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-03918
HistorySep 02, 2022 - 12:00 a.m.

Apache OFBiz Code Injection Vulnerability (CNVD-2023-03918)

2022-09-0200:00:00
China National Vulnerability Database
www.cnvd.org.cn
17
apache
ofbiz
code injection
vulnerability
birt
remote execution

0.025 Low

EPSS

Percentile

90.2%

Apache OFBiz is an enterprise resource planning (ERP) system from the Apache Foundation. A code injection vulnerability exists in Apache OFBiz 18.12.05 and earlier versions, which stems from an error in Birt and can be exploited by attackers to remotely execute code.

CPENameOperatorVersion
apache ofbizle18.12.05

0.025 Low

EPSS

Percentile

90.2%

Related for CNVD-2023-03918