ZeroHour

CVE-2017-1000217

CVSS 3.0
8.8 high
EPSS
2%p78
Published
()
Modified
Description

Opencast 2.3.2 and older versions are vulnerable to script injections through media and metadata in the player and media module resulting in arbitrary code execution, fixed in 2.3.3 and 3.0.

Vendors
opencast
Products
opencast
Weakness
CWE-74
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.