In Janitza GridVis through 9.0.66, exposed dangerous methods in the de.janitza.pasw.project.server.ServerDatabaseProject project load functionality allow remote authenticated administrative users to execute arbitrary Groovy code.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Mar 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Janitza
Janitza gridvis |
|
CPEs | cpe:2.3:a:janitza:gridvis:*:*:*:*:*:*:*:* | |
Vendors & Products |
Janitza
Janitza gridvis |
|
Metrics |
ssvc
|
Tue, 06 Aug 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-13T18:48:59.500Z
Reserved: 2023-12-15T00:00:00.000Z
Link: CVE-2023-50895

Updated: 2024-08-02T22:23:43.939Z

Status : Awaiting Analysis
Published: 2024-03-26T15:15:48.860
Modified: 2024-11-21T08:37:29.717
Link: CVE-2023-50895

No data.