CVE-2020-19229 is a vulnerability in Jeesite
Published on April 5, 2022
Jeesite 1.2.7 uses the apache shiro version 1.2.3 affected by CVE-2016-4437. Because of this version of the java deserialization vulnerability, an attacker could exploit the vulnerability to execute arbitrary commands via the rememberMe parameter.
Products Associated with CVE-2020-19229
Want to know whenever a new CVE is published for Jeesite? stack.watch will email you.
Exploit Probability
EPSS
0.35%
Percentile
57.31%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.