Description
The project import functionality in SoapUI 5.3.0 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL project file.
Remediation
References
http://packetstormsecurity.com/files/146339/SoapUI-5.3.0-Code-Execution.html
Related Vulnerabilities
CVE-2023-47325 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web
CVE-2023-38704 Vulnerability in npm package import-in-the-middle
CVE-2020-8203 Vulnerability in maven package org.webjars:lodash
CVE-2015-5377 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2017-16132 Vulnerability in npm package simple-npm-registry