Description
Apache OFBiz uses the Birt project plugin (https://eclipse.github.io/birt-website/) to create data visualizations and reports. By leveraging a bug in Birt (https://bugs.eclipse.org/bugs/show_bug.cgi?id=538142) it is possible to perform a remote code execution (RCE) attack in Apache OFBiz, release 18.12.05 and earlier.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 20 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-11-20T15:11:11.129Z
Reserved: 2022-02-20T00:00:00.000Z
Link: CVE-2022-25371
Updated: 2024-08-03T04:36:06.997Z
Status : Modified
Published: 2022-09-02T07:15:07.450
Modified: 2024-11-21T06:52:05.710
Link: CVE-2022-25371
No data.
OpenCVE Enrichment
No data.
Weaknesses