imPC@ndo IT

Tracker / CVE-2020-9496

CVE-2020-9496

Medium 6.1

XML-RPC request are vulnerable to unsafe deserialization and Cross-Site Scripting issues in Apache OFBiz 17.12.03

Affected products and versions

apache ofbiz

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References