Update CVE-2021-42237.yaml

patch-1
Prince Chaddha 2021-11-11 11:16:37 +05:30 committed by GitHub
parent 8aa7e61665
commit 7a08bde65d
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 2 additions and 2 deletions

View File

@ -18,12 +18,12 @@ info:
For Sitecore XP 8.0.0 - Sitecore XP 8.2.7, remove the Report.ashx file from /sitecore/shell/ClientBin/Reporting/Report.ashx from all your server instances.
metadata:
shodan-query: http.title:"SiteCore"
tags: rce,sitecore,deserialization,oast
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.80
cve-id: CVE-2021-42237
cwe-id: CWE-502
tags: rce,sitecore,deserialization,oast
requests:
- raw: