Ben Bleything

1 exploit Active since May 2021
CVE-2021-33575 WRITEUP CRITICAL WORKING POC
Pixar ruby-jss < 1.6.0 - Remote Code Execution via Plist Marshal.load
The Pixar ruby-jss gem before 1.6.0 allows remote attackers to execute arbitrary code because of the Plist gem's documented behavior of using Marshal.load during XML document processing.
CVSS 9.8