Remote Code Execution Vulnerability in OpenRemote Product by OpenRemote
CVE-2022-31860
9.8CRITICAL
What is CVE-2022-31860?
An issue in OpenRemote versions up to 1.0.4 permits attackers to execute arbitrary code by crafting specific Groovy rules. This vulnerability exposes systems to potential exploitation, allowing unauthorized access and control over affected installations. Administrators are strongly advised to update to the latest version and review existing Groovy rules for any malicious alterations.
