Apache OFBiz has unsafe deserialization prior to 17.12.06. An unauthenticated attacker can use this vulnerability to successfully take over Apache OFBiz.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view