logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-34267

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-34267

Description:
An issue was discovered in RWS WorldServer before 11.7.3. Adding a token parameter with the value of 02 bypasses all authentication requirements. Arbitrary Java code can be uploaded and executed via a .jar archive to the ws-api/v2/customizations/api endpoint.
Last updated date:
01/04/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/04/2024
Reference url to background

https://www.triskelelabs.com/vulnerabilities-in-rws-worldserver

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy