Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-4450 PoC — JeecgBoot 注入漏洞

Source
Associated Vulnerability
Title:JeecgBoot 注入漏洞 (CVE-2023-4450)
Description:JeecgBoot是中国的一个适用于企业 Web 应用程序的 Java 低代码平台。 JeecgBoot JimuReport 1.6.0版本及之前版本存在注入漏洞。目前尚无此漏洞的相关信息,请随时关注CNNVD或厂商公告。
Description
A vulnerability was found in jeecgboot JimuReport up to 1.6.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Template Handler. The manipulation leads to injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
File Snapshot

id: CVE-2023-4450 info: name: JeecgBoot JimuReport - Template injection author: Sumanth Vankine ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.