The vulnerability permits attackers to circumvent authentication processes, enabling them to remotely execute arbitrary code
[
{
"defaultStatus": "unaffected",
"product": "Apache OFBiz",
"vendor": "Apache Software Foundation",
"versions": [
{
"lessThan": "18.12.11",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
]
issues.apache.org/jira/browse/OFBIZ-12873
lists.apache.org/thread/9tmf9qyyhgh6m052rhz7lg9vxn390bdv
lists.apache.org/thread/oj2s6objhdq72t6g29omqpcbd1wlp48o
ofbiz.apache.org/download.html
ofbiz.apache.org/release-notes-18.12.11.html
ofbiz.apache.org/security.html
www.openwall.com/lists/oss-security/2023/12/26/3