CVE-2021-20306
CVE-2021-20306
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
01 jun 2021Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A flaw was found in the BPMN editor in version jBPM 7.51.0.Final. Any authenticated user from any project can see the name of Ruleflow Groups from other projects, despite the user not having access to those projects. The highest threat from this vulnerability is to confidentiality.
Productos afectados
n/a · Business-central¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →