The BPM component in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to execute arbitrary commands.
References
| Link | Resource |
|---|---|
| https://www2.deloitte.com/it/it/pages/risk/articles/security-advisory-article---deloitte-italy---risk.html | Vendor Advisory |
Configurations
Information
Published : 2020-04-29 13:15
Updated : 2021-07-21 11:39
NVD link : CVE-2019-16652
Mitre link : CVE-2019-16652
JSON object : View
Products Affected
geniusbytes
- genius_server
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
