Description
PowerJob v4.3.3 was discovered to contain a remote command execution (RCE) vulnerability via the instanceId parameter at /instance/detail.
Remediation
References
https://github.com/PowerJob/PowerJob/
https://github.com/PowerJob/PowerJob/issues/675
https://novysodope.github.io/2023/07/02/100/
Related Vulnerabilities
CVE-2018-17145 Vulnerability in npm package bcoin
CVE-2021-27292 Vulnerability in npm package ua-parser-js
CVE-2023-50422 Vulnerability in maven package com.sap.cloud.security.xsuaa:spring-xsuaa
CVE-2020-8298 Vulnerability in npm package fs-path
CVE-2023-44487 Vulnerability in maven package io.netty:netty-codec-http2