RULE(RULE ID:333617)

Rule General Information
Release Date: 2021-06-03
Rule Name: Yonyou NC bsh.servlet.BshServlet Remote Code Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Yonyou is a cloud service and software provider in Beijing, China. Its YonyouNC products have remote code execution vulnerabilities, which are located in bsh.servlet.BshServlet. Attackers can construct special packages to carry out anti-sequence attacks and execute arbitrary codes remotely.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://umc.yonyou.com/ump/home?type=savetypatch