DataEase prior to version 2.10.8 contains a remote code execution caused by insecure backend JDBC link handling, letting authenticated users execute arbitrary code, exploit requires user authentication.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view