Sploitus

CVE-2023-49442

1 known exploit for CVE-2023-49442

Deserialization of Untrusted Data in jeecgFormDemoController in JEECG 4.0 and earlier allows attackers to run arbitrary code via crafted POST request.

Affected products
Jeecg
Jeecg
≤ 4.0
CVSS 3.1
9.8 CRITICAL
EPSS
38.5% (98th percentile)
Weakness
CWE-502
NVD status
Modified
Published
2024-01-03
CVE-2023-49442 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2023-49442

Proof-of-concept code and exploit modules indexed by Sploitus