Total vulnerabilities in the database
The admin terminal in Hawt.io does not require authentication, which allows remote attackers to execute arbitrary commands via the k parameter.
Software | From | Fixed in |
---|---|---|
hawt / hawtio | - | 1.2.2.x |
redhat / jboss_fuse | 6.1.0-beta | 6.1.0-beta.x |