NA

CVE-2022-25371

Published: 02/09/2022 Updated: 25/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Apache OFBiz uses the Birt project plugin (eclipse.github.io/birt-website/) to create data visualizations and reports. By leveraging a bug in Birt (bugs.eclipse.org/bugs/show_bug.cgi?id=538142) it is possible to perform a remote code execution (RCE) attack in Apache OFBiz, release 18.12.05 and previous versions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache ofbiz