First published: Fri Aug 19 2022(Updated: )
XXL-JOB all versions as of 11 July 2022 are vulnerable to Insecure Permissions resulting in the ability to execute admin function with low Privilege account.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
xuxueli xxl-job | <=2.3.1 | |
maven/com.xuxueli:xxl-job | <=2.3.1 | 2.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this XXL-JOB vulnerability is CVE-2022-36157.
The severity rating of CVE-2022-36157 is 8.8 (high).
The affected software for CVE-2022-36157 is XXL-JOB all versions as of 11 July 2022.
The impact of CVE-2022-36157 is the ability to execute admin functions with a low privilege account.
Currently, there is no information available regarding a fix for CVE-2022-36157. It is recommended to follow the recommendations provided by the vendor or security advisories for updates.