Update CVE-2021-42237.yaml

patch-1
Prince Chaddha 2021-11-11 10:28:47 +05:30 committed by GitHub
parent 84cde9703c
commit 423c7c434c
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 2 additions and 2 deletions

View File

@ -18,12 +18,12 @@ info:
For Sitecore XP 8.0.0 - Sitecore XP 8.2.7, remove the Report.ashx file from /sitecore/shell/ClientBin/Reporting/Report.ashx from all your server instances.
metadata:
shodan-query: http.title:"SiteCore"
tags: rce,sitecore,deserialization,oast
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.80
cve-id: CVE-2021-42237
cwe-id: CWE-502
tags: rce,sitecore,deserialization,oast
requests:
- raw:
@ -116,4 +116,4 @@ requests:
- type: word
part: body
words:
- "System.ArgumentNullException"
- "System.ArgumentNullException"