CVE-2024-43028
A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to execute arbitrary code via a crafted HTTP request.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://gist.github.com/aqyoung/e3b7ba5d8b8261df7d09931dbe779b3b, https://pan.baidu.com/s/1h2RGEvxuvsKtsn2-TlFlmA?pwd=gf5r, https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/43xxx/CVE-2024-43028.json, https://nvd.nist.gov/vuln/detail/CVE-2024-43028