Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-4100

Опубликовано: 15 июл. 2020
Источник: nvd
CVSS3: 4.4
CVSS2: 2.1
EPSS Низкий

Описание

"HCL Verse for Android was found to employ dynamic code loading. This mechanism allows a developer to specify which components of the application should not be loaded by default when the application is started. Typically, core components and additional dependencies are loaded natively at runtime; however, dynamically loaded components are only loaded as they are specifically requested. While this can have a positive impact on performance, or grant additional functionality (for example, a non-invasive update feature), it can also open the application to loading unintended code if not implemented properly."

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hcltechsw:hcl_verse:11.0.4:*:*:*:*:android:*:*

EPSS

Процентиль: 17%
0.00053
Низкий

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-913

Связанные уязвимости

github
больше 3 лет назад

"HCL Verse for Android was found to employ dynamic code loading. This mechanism allows a developer to specify which components of the application should not be loaded by default when the application is started. Typically, core components and additional dependencies are loaded natively at runtime; however, dynamically loaded components are only loaded as they are specifically requested. While this can have a positive impact on performance, or grant additional functionality (for example, a non-invasive update feature), it can also open the application to loading unintended code if not implemented properly."

EPSS

Процентиль: 17%
0.00053
Низкий

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-913