CVE-2024-7314

CVSS V2 None CVSS V3 None
Description
anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitrary Java on the victim server.
Overview
  • CVE ID
  • CVE-2024-7314
  • Assigner
  • VulnCheck
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-08-02T16:33:54.191Z
  • Last Modified Date
  • 2024-08-02T16:33:54.191Z
History
Created Old Value New Value Data Type Notes
2024-08-03 13:04:03 Added to TrackCVE