A Remote Code Execution (RCE) vulnerability in /be/rpc...
High severity
Unreviewed
Published
May 12, 2023
to the GitHub Advisory Database
•
Updated Jan 24, 2025
Description
Published by the National Vulnerability Database
May 12, 2023
Published to the GitHub Advisory Database
May 12, 2023
Last updated
Jan 24, 2025
A Remote Code Execution (RCE) vulnerability in /be/rpc.php in Jedox 2020.2.5 allows remote authenticated users to load arbitrary PHP classes from the 'rtn' directory and execute its methods.
References