← back
CVE-2021-34427

CVE-2021-34427

EPSS 57.7%CWE-20
In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT viewer dir) to inject JSP code into the running instance.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →