RULE(RULE ID:339005)

Rule General Information
Release Date: 2025-06-04
Rule Name: Weaver E-Cology BshServlet Remote Command Exection Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Weaver E-cology is a high-end collaborative office system designed for large enterprises and groups. It provides comprehensive functions such as process management, knowledge management, and project management. It supports multiple organizations, departments, and users, helping enterprises achieve efficient collaboration and digital transformation. There is a remote command execution vulnerability in the BshServlet of Weaver E-cology. Attackers can construct special requests to exploit this vulnerability and execute arbitrary commands on the server.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.