#VU59936 Improper input validation in Primavera Unifier - CVE-2021-42575
Published: January 23, 2022
Primavera Unifier
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
The vulnerability exists due to improper input validation within the Platform, Data Persistence (OWASP Java HTML Sanitizer) component in Primavera Unifier. A remote non-authenticated attacker can exploit this vulnerability to execute arbitrary code.