ZeroHour

CVE-2017-16670

CVSS 3.0
7.8 high
EPSS
2%p75
Published
()
Modified
Description

The project import functionality in SoapUI 5.3.0 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL project file.

Vendors
smartbear
Products
soapui
Weakness
CWE-94
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.