A newly disclosed, unpatched SQL injection vulnerability in GeoServer is currently being actively tested across the internet. Researchers have issued warnings that affected deployments may be vulnerable to remote code execution (RCE) under specific database configurations. At this time, the flaw does not have a CVE identifier or a vendor patch. The issue was publicly […]
The post GeoServer Zero-Day SQL Injection Vulnerability Actively Exploited to Gain RCE appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
Source: gbHackers
Source Link: https://gbhackers.com/geoserver-zero-day-sql-injection-vulnerability/