CVE-2023-38905 Information
Aug 18, 2023
cve
Description
SQL injection vulnerability in Jeecg-boot v.3.5.0 and before allows a local attacker to cause a denial of service via the Benchmark PG_Sleep DBMS_Lock.Sleep Waitfor DECODE and DBMS_PIPE.RECEIVE_MESSAGE functions.
Reference
https://github.com/jeecgboot/jeecg-boot/issues/4737 https://gist.github.com/wealeson1/e24fc8575f4e051320d69e9a75080642
Share on: