← Back to CVE List

CVE-2024-7314

Published: 2024-08-02T17:16Z
Last Modified: 2024-09-17T15:45Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitrary Java on the victim server. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt