Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper authorization in the ToolGroupResource and RoleAjax REST/DWR endpoints in dotCMS dotCMS 21.02 through 26.06.22-03 on all platforms allows a low-privileged authenticated backend user to self-assign the administrative layout and self-grant the CMS Administrator role, then achieve remote code execution via a crafted OSGi bundle upload whose BundleActivator executes arbitrary shell commands.
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Vulnerability Type
特权管理不恰当
Vulnerability Title
DotCMS 权限许可和访问控制问题漏洞
Vulnerability Description
DotCMS是美国DotCMS公司开源的一个用 Java 编写的开源内容管理系统。用于管理内容和内容驱动的站点和应用程序。 DotCMS 21.02版本至26.06.22-03版本存在权限许可和访问控制问题漏洞,该漏洞源于ToolGroupResource和RoleAjax REST/DWR端点存在授权不当问题,可能导致低权限认证的后端用户自指派管理布局并自授CMS管理员角色,然后通过特制OSGi bundle上传实现远程代码执行,执行任意shell命令。
CVSS Information
N/A
Vulnerability Type
N/A