CVE-2017-15714
published 2018-01-04CVE-2017-15714: The BIRT plugin in Apache OFBiz 16.11.01 to 16.11.03 does not escape user input property passed. This allows for code injection by passing that code through…
PriorityP352critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
3.29%
87.1th percentile
The BIRT plugin in Apache OFBiz 16.11.01 to 16.11.03 does not escape user input property passed. This allows for code injection by passing that code through the URL. For example by appending this code "__format=%27;alert(%27xss%27)" to the URL an alert window would execute.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | ofbiz | — | — |
| apache | ofbiz | — | — |
| apache | ofbiz | — | — |
| apache | ofbiz | — | — |
| apache_software_foundation | apache_ofbiz | — | — |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_apache9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rq9x-7hcg-78pm: The BIRT plugin in Apache OFBiz 16
ghsa_unreviewed·2022-05-14
CVE-2017-15714 [CRITICAL] CWE-74 GHSA-rq9x-7hcg-78pm: The BIRT plugin in Apache OFBiz 16
The BIRT plugin in Apache OFBiz 16.11.01 to 16.11.03 does not escape user input property passed. This allows for code injection by passing that code through the URL. For example by appending this code "__format=%27;alert(%27xss%27)" to the URL an alert window would execute.
Apache
Apache ofbiz: CVE-2017-15714
vendor_apache·CVSS 9.8
CVE-2017-15714 [CRITICAL] Apache ofbiz: CVE-2017-15714
Apache ofbiz: CVE-2017-15714
; affected releases: from 16.11.01 to 16.11.03; fixed in 16.11.04 with revision 1759065
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2018-01-04
Published