Loading HuntDB...

GHSA-29q4-gxjq-rx5c

GitHub Security Advisory

Remote Code Execution in SCIMono

✓ GitHub Reviewed HIGH Has CVE

Advisory Details

### Impact
It is possible for attacker to inject and execute java expression and compromising the availability and integrity of the system.

### Patches
The issue was fixed on [0.0.19 version](https://mvnrepository.com/artifact/com.sap.scimono/scimono-server/0.0.19)

Affected Packages

Maven com.sap.scimono:scimono-server
Affected versions: 0 (fixed in 0.0.19)

Related CVEs

Key Information

GHSA ID
GHSA-29q4-gxjq-rx5c
Published
February 10, 2021 2:31 AM
Last Modified
February 10, 2021 1:48 AM
CVSS Score
7.5 /10
Primary Ecosystem
Maven
Primary Package
com.sap.scimono:scimono-server
GitHub Reviewed
✓ Yes

Dataset

Last updated: June 26, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.