CISA Known Exploited Vulnerability

CVE-2019-7238

Sonatype · Nexus Repository Manager

Sonatype Nexus Repository Manager Incorrect Access Control Vulnerability

Date added
BOD 22-01 due date
CWE
Ransomware Unknown

CISA description

Sonatype Nexus Repository Manager before 3.15.0 has an incorrect access control vulnerability. Exploitation allows for remote code execution.

Required action

Apply updates per vendor instructions.