mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-06-20 18:00:22 +00:00
Update GobyVuls-Document.md
This commit is contained in:
parent
e32b0b4725
commit
352ce81806
@ -1,7 +1,25 @@
|
|||||||
# Goby History Update Vulnerability Total Document (Continuously Update)
|
# Goby History Update Vulnerability Total Document (Continuously Update)
|
||||||
The following content is an updated vulnerability from Goby. Some of the vulnerabilities are recorded on the screen for easy viewing.
|
The following content is an updated vulnerability from Goby. Some of the vulnerabilities are recorded on the screen for easy viewing.
|
||||||
|
|
||||||
**Updated document date: December 07, 2023**
|
**Updated document date: December 28, 2023**
|
||||||
|
|
||||||
|
|
||||||
|
## Apache OFBiz webtools/control/ProgramExport remote code execution vulnerability (CVE-2023-51467)
|
||||||
|
|
||||||
|
| **Vulnerability** | **Apache OFBiz webtools/control/ProgramExport remote code execution vulnerability (CVE-2023-51467)** |
|
||||||
|
| :----: | :-----|
|
||||||
|
| **Chinese name** | Apache OFBiz webtools/control/ProgramExport 远程代码执行漏洞(CVE-2023-51467) |
|
||||||
|
| **CVSS core** | 9.8 |
|
||||||
|
| **FOFA Query** (click to view the results directly)| [app="Apache_OFBiz"](https://en.fofa.info/result?qbase64=Y2VydD0iT3JnYW5pemF0aW9uYWwgVW5pdDogQXBhY2hlIE9GQml6IiB8fCAoYm9keT0id3d3Lm9mYml6Lm9yZyIgJiYgYm9keT0iL2ltYWdlcy9vZmJpel9wb3dlcmVkLmdpZiIpIHx8IGhlYWRlcj0iU2V0LUNvb2tpZTogT0ZCaXouVmlzaXRvciIgfHwgYmFubmVyPSJTZXQtQ29va2llOiBPRkJpei5WaXNpdG9yIg%3D%3D) |
|
||||||
|
| **Number of assets affected** | 5912 |
|
||||||
|
| **Description** |Apache OFBiz is an open source enterprise resource planning (ERP) system that provides a variety of business functions and modules.Apache OFBiz has a code execution vulnerability in webtools/control/ProgramExport. An attacker can use this vulnerability to execute arbitrary code on the server side, write a backdoor, obtain server permissions, and then control the entire web server. |
|
||||||
|
| **Impact** | Apache OFBiz has a code execution vulnerability in webtools/control/ProgramExport. An attacker can use this vulnerability to execute arbitrary code on the server side, write a backdoor, obtain server permissions, and then control the entire web server. |
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
## Apache OFBiz webtools/control/xmlrpc Remote Code Execution Vulnerability (CVE-2023-49070)
|
## Apache OFBiz webtools/control/xmlrpc Remote Code Execution Vulnerability (CVE-2023-49070)
|
||||||
|
Loading…
x
Reference in New Issue
Block a user