Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-80563
HistoryJul 30, 2023 - 12:00 a.m.

Apache Jackrabbit Code Execution Vulnerability

2023-07-3000:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
apache jackrabbit
code execution
vulnerability
commons-beanutils
arbitrary code execution
webapp
standalone
content repository
apache
usa
cnvd

AI Score

7.8

Confidence

High

EPSS

0.036

Percentile

91.9%

Apache Jackrabbit is a content repository from Apache (USA). A code execution vulnerability exists in Apache Jackrabbit Webapp/Standalone, which stems from the component commons-beanutils failing to properly filter special elements of constructed snippets. An attacker could exploit the vulnerability to cause arbitrary code execution.

AI Score

7.8

Confidence

High

EPSS

0.036

Percentile

91.9%