A bypass in the component sofa-hessian of Solon before v2.3.3 allows attackers to execute arbitrary code via providing crafted payload.
References
Link | Resource |
---|---|
https://github.com/noear/solon/compare/v2.3.2...v2.3.3 | Release Notes |
https://github.com/noear/solon/issues/145 | Exploit Issue Tracking |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-06-19T00:00:00
Updated: 2024-03-07T19:21:50.858495
Reserved: 2023-06-18T00:00:00
Link: CVE-2023-35839
JSON object: View
NVD Information
Status : Modified
Published: 2023-06-19T01:15:08.667
Modified: 2024-03-07T20:15:50.123
Link: CVE-2023-35839
JSON object: View
Redhat Information
No data.
CWE