OrangeScrum version 2.0.11 allows an... CVE-2023-1783

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

OrangeScrum version 2.0.11 allows an external attacker to remotely obtain AWS instance credentials. This is possible because the application does not properly validate the HTML content to be converted to PDF.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息