{ "id": "CVE-2023-47418", "sourceIdentifier": "cve@mitre.org", "published": "2023-11-30T06:15:46.873", "lastModified": "2023-11-30T06:15:46.873", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Remote Code Execution (RCE) vulnerability in o2oa version 8.1.2 and before, allows attackers to create a new interface in the service management function to execute JavaScript." } ], "metrics": {}, "references": [ { "url": "https://gist.github.com/Onlyning/0cf7b1c597a36dd3a2e9ec948b881ac8", "source": "cve@mitre.org" }, { "url": "https://github.com/Onlyning/O2OA", "source": "cve@mitre.org" } ] }