Home
CRITICAL: 10.0 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HDefault status
unknown
2.0.1 (custom)
affected
Description
/server/executeExec of JEHC-BPM 2.0.1 allows attackers to execute arbitrary code via execParams.
Problem types
Product status
2.0.1 (custom)
References
gist.github.com/Cafe-Tea/bc14b38f4bfd951de2979a24c3358460
web.archive.org/...c14b38f4bfd951de2979a24c3358460/revisions