Description
Sonatype Nexus Repository before 3.21.2 allows Remote Code Execution.
Remediation
References
https://support.sonatype.com/hc/en-us/articles/360044356194
Related Vulnerabilities
CVE-2015-7294 Vulnerability in npm package ldapauth-fork
CVE-2020-13949 Vulnerability in maven package org.apache.thrift:libthrift
CVE-2020-36282 Vulnerability in maven package com.rabbitmq.jms:rabbitmq-jms
CVE-2023-48796 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-master