An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code via a crafted request to the console/heimdall endpoint
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-25 21:17
Updated : 2026-08-31 20:59
NVD link : CVE-2026-51368
Mitre link : CVE-2026-51368
CVE.ORG link : CVE-2026-51368
JSON object : View
Products Affected
No product.
CWE
CWE-502
Deserialization of Untrusted Data
