jishenghua JSH_ERP
0 remedies
cpe:2.3:a:jishenghua:jsherp:*:*:*:*:*:*:*
0 remedies
- <= 2.3.1
A deserialization vulnerability has been identified in Jishenghua JSH_ERP version 2.3.1. The issue arises in the '/user/addUser' endpoint, which is susceptible to fastjson deserialization attacks. This vulnerability allows for remote code execution.
Exploitation of this vulnerability could lead to remote code execution on the server where JSH_ERP is running.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.