CVE-2022-27919

Gradle Enterprise before 2022.1 allows remote code execution if the installation process did not specify an initial configuration file. The configuration allows certain anonymous access to administration and an API.
References
Link Resource
https://security.gradle.com/advisory/2022-05 Mitigation Vendor Advisory
Configurations

Configuration 1

cpe:2.3:a:gradle:enterprise:*:*:*:*:*:*:*:*

Information

Published : 2022-03-25 08:15

Updated : 2022-03-30 07:08


NVD link : CVE-2022-27919

Mitre link : CVE-2022-27919

Products Affected
No products.
CWE