CVE-2023-35042
37Vexday Risk Score
Prioriza la corrección. Ella explotación observada por VulnCheck.
ssvc Attendepss 43%
de la publicación al arma
Publicada en NVD12 jun
VulnCheck12 jun
probabilidad de explotación
43%top 1% de las CVE
explotación observada
síVulnCheck
GeoServer 2, in some configurations, allows remote attackers to execute arbitrary code via java.lang.Runtime.getRuntime().exec in wps:LiteralData within a wps:Execute request, as exploited in the wild in June 2023. NOTE: the vendor states that they are unable to reproduce this in any version.
Productos afectados
n/a · n/a