A Remote Code Execution (RCE) vulnerability in /be/rpc.php in Jedox 2020.2.5 allows remote authenticated users to load arbitrary PHP classes from the rtn directory and execute its methods.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jedox | Jedox | 2020.2.5 (including) | 2020.2.5 (including) |
Jedox_cloud | Jedox | - (including) | - (including) |