In SCIMono before 0.0.19, it is possible for an attacker to inject and execute java expression compromising the availability and integrity of the system.
References
Link | Resource |
---|---|
https://github.com/SAP/scimono/security/advisories/GHSA-29q4-gxjq-rx5c | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2021-02-09 21:15
Updated : 2024-02-28 18:08
NVD link : CVE-2021-21479
Mitre link : CVE-2021-21479
CVE.ORG link : CVE-2021-21479
JSON object : View
Products Affected
sap
- scimono
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')