Vulnerabilities (CVE)

Filtered by vendor Rocketsoftware Subscribe
Filtered by product Trufusion
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-36431 1 Rocketsoftware 1 Trufusion 2023-12-10 N/A 9.8 CRITICAL
An arbitrary file upload vulnerability in Rocket TRUfusion Enterprise before 7.9.6.1 allows unauthenticated attackers to execute arbitrary code via a crafted JSP file. Issue fixed in version 7.9.6.1.