OrientDB Groovy Wrapper Remote Code Execution (CVE-2017-11467)

A remote code execution vulnerability exists in OrientDB server. The vulnerability is due privilege escalation when the server receives a specially crafted request. A remote attacker can exploit this vulnerability to gain privilege rights and execute arbitrary code.

from Check Point Update Services Advisories http://ift.tt/2BOEf1D

No comments:

Post a Comment

Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL Sideloading

Cybersecurity researchers have uncovered a new phishing campaign that exploits social media private messages to propagate malicious payloads...