Описание
HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage. This vulnerability has been patched in version 3.9.0
Ссылки
- ExploitVendor Advisory
- Release Notes
- ExploitVendor Advisory
- Release Notes
Уязвимые конфигурации
EPSS
9.8 Critical
CVSS3
8.8 High
CVSS3
Дефекты
Связанные уязвимости
HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage. This vulnerability has been patched in version 3.9.0
HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage. This vulnerability has been patched in version 3.9.0
HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerab ...
HtmlUnit vulnerable to Remote Code Execution (RCE) via XSTL
Уязвимость браузера без графической оболочки HtmlUnit, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код
EPSS
9.8 Critical
CVSS3
8.8 High
CVSS3