Description
In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT viewer dir) to inject JSP code into the running instance.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21085 | In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT viewer dir) to inject JSP code into the running instance. |
References
History
No history.
Status: PUBLISHED
Assigner: eclipse
Published:
Updated: 2024-08-04T00:12:50.360Z
Reserved: 2021-06-09T00:00:00.000Z
Link: CVE-2021-34427
No data.
Status : Modified
Published: 2021-06-25T19:15:09.880
Modified: 2024-11-21T06:10:23.087
Link: CVE-2021-34427
OpenCVE Enrichment
No data.
EUVD