In J2eeFAST <=2.7, the backend function has unsafe filtering, which allows an attacker to trigger certain sensitive functions resulting in arbitrary code execution.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| J2eefast | J2eefast | * | 2.6.0 (excluding) |
References