Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-5529

Опубликовано: 10 фев. 2020
Источник: redhat
CVSS3: 5.6
EPSS Низкий

Описание

HtmlUnit prior to 2.37.0 contains code execution vulnerabilities. HtmlUnit initializes Rhino engine improperly, hence a malicious JavScript code can execute arbitrary Java code on the application. Moreover, when embedded in Android application, Android-specific initialization of Rhino engine is done in an improper way, hence a malicious JavaScript code can execute arbitrary Java code on the application.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Single Sign-On 7htmlunitNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-665->CWE-94
https://bugzilla.redhat.com/show_bug.cgi?id=1803072htmlunit: malicious JavaScript code leads to arbitrary java code execution

EPSS

Процентиль: 84%
0.02085
Низкий

5.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
почти 6 лет назад

HtmlUnit prior to 2.37.0 contains code execution vulnerabilities. HtmlUnit initializes Rhino engine improperly, hence a malicious JavScript code can execute arbitrary Java code on the application. Moreover, when embedded in Android application, Android-specific initialization of Rhino engine is done in an improper way, hence a malicious JavaScript code can execute arbitrary Java code on the application.

CVSS3: 8.1
nvd
почти 6 лет назад

HtmlUnit prior to 2.37.0 contains code execution vulnerabilities. HtmlUnit initializes Rhino engine improperly, hence a malicious JavScript code can execute arbitrary Java code on the application. Moreover, when embedded in Android application, Android-specific initialization of Rhino engine is done in an improper way, hence a malicious JavaScript code can execute arbitrary Java code on the application.

CVSS3: 8.1
debian
почти 6 лет назад

HtmlUnit prior to 2.37.0 contains code execution vulnerabilities. Html ...

CVSS3: 8.1
github
больше 5 лет назад

Code execution vulnerability in HtmlUnit

EPSS

Процентиль: 84%
0.02085
Низкий

5.6 Medium

CVSS3