Update CVE-2021-42237.yaml

patch-1
Prince Chaddha 2021-11-11 11:16:37 +05:30 committed by GitHub
parent 8aa7e61665
commit 7a08bde65d
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 2 additions and 2 deletions

View File

@ -18,12 +18,12 @@ info:
For Sitecore XP 8.0.0 - Sitecore XP 8.2.7, remove the Report.ashx file from /sitecore/shell/ClientBin/Reporting/Report.ashx from all your server instances. For Sitecore XP 8.0.0 - Sitecore XP 8.2.7, remove the Report.ashx file from /sitecore/shell/ClientBin/Reporting/Report.ashx from all your server instances.
metadata: metadata:
shodan-query: http.title:"SiteCore" shodan-query: http.title:"SiteCore"
tags: rce,sitecore,deserialization,oast
classification: classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.80 cvss-score: 9.80
cve-id: CVE-2021-42237 cve-id: CVE-2021-42237
cwe-id: CWE-502 cwe-id: CWE-502
tags: rce,sitecore,deserialization,oast
requests: requests:
- raw: - raw:
@ -116,4 +116,4 @@ requests:
- type: word - type: word
part: body part: body
words: words:
- "System.ArgumentNullException" - "System.ArgumentNullException"