cve/2024/CVE-2024-7314.md
2025-09-29 16:08:36 +00:00

881 B

CVE-2024-7314

Description

anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitrary Java on the victim server.

POC

Reference

Github