Sonatype Nexus Repository Manager is use an insecure access controls. An unauthenticated user can craft requests in a way that can allow execution of arbitrary code and programs on the host system.
CPE | Name | Operator | Version |
---|---|---|---|
nexus-core | le | 3.14.0-04 | |
nexus-core | le | 2.14.16-01 |