https://www.metersphere.com/index

The system command reverse-shell can be executed of the metersphere system workbench

Description

metersphere can realize RCE

ID:CVE-2023-29944
PPRODUCT:metersphere
VERSION: <1.20.20-LTS-79D354A6
PROBLEM TYPE:RCEDESCRIPTION:METERSPHERE 1.20.20-LTS-79D354A6 WORKBENCH PRIVILEGE ESCALATION

Report disclosed by GhostAatrox :P