CVE-2017-1000217
—CVSS 3.0
8.8 high
EPSS
2%p78
Published
()
Modified
Description
Opencast 2.3.2 and older versions are vulnerable to script injections through media and metadata in the player and media module resulting in arbitrary code execution, fixed in 2.3.3 and 3.0.
- Vendors
- opencast
- Products
- opencast
- Weakness
- CWE-74
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.