Apache OFBiz Nested Expression Remote Code Execution Vulnerability

Bugtraq ID: 61369
Class: Input Validation Error
CVE: CVE-2013-2250
Remote: Yes
Local: No
Published: Jul 20 2013 12:00AM
Updated: Jul 20 2013 12:00AM
Credit: Grégory Draperi
Vulnerable: Apache OfBiz 12.4.1
Apache OfBiz 11.4.2
Apache OfBiz 11.4.1
Apache OfBiz 10.4.5
Apache OfBiz 10.4.4
Apache OfBiz 10.4.3
Apache OfBiz 10.4.2
Apache OfBiz 10.4.1
Not Vulnerable: Apache OfBiz 12.4.2
Apache OfBiz 11.4.3
Apache OfBiz 10.4.6


 

Privacy Statement
Copyright 2010, SecurityFocus