Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-03919
HistorySep 02, 2022 - 12:00 a.m.

Apache OFBiz Code Injection Vulnerability (CNVD-2023-03919)

2022-09-0200:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
apache ofbiz
code injection
vulnerability
contact us page
erp system

0.003 Low

EPSS

Percentile

71.5%

Apache OFBiz is an enterprise resource planning (ERP) system from the Apache Foundation. A code injection vulnerability exists in Apache OFBiz versions 18.12.05 and earlier, which could be exploited to insert malicious content into the “Subject” field of the “Contact us” page. field of the “Contact us” page.

CPENameOperatorVersion
apache ofbizle18.12.05

0.003 Low

EPSS

Percentile

71.5%

Related for CNVD-2023-03919