Description
PowerJob v4.3.3 was discovered to contain a remote command execution (RCE) vulnerability via the instanceId parameter at /instance/detail.
Remediation
References
https://github.com/PowerJob/PowerJob/issues/675
https://github.com/PowerJob/PowerJob/
https://novysodope.github.io/2023/07/02/100/
Related Vulnerabilities
CVE-2022-25894 Vulnerability in maven package com.bstek.uflo:uflo-core
CVE-2021-23470 Vulnerability in npm package putil-merge
CVE-2011-3190 Vulnerability in maven package tomcat:tomcat-coyote
CVE-2020-11991 Vulnerability in maven package org.apache.cocoon:cocoon-core
CVE-2023-42268 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core