Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-5245
HistoryFeb 24, 2020 - 6:15 p.m.

Security feature bypass

2020-02-2418:15:00
PRIOn knowledge base
www.prio-n.com
4

8.9 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.4%

Dropwizard-Validation before 1.3.19, and 2.0.2 may allow arbitrary code execution on the host system, with the privileges of the Dropwizard service account, by injecting arbitrary Java Expression Language expressions when using the self-validating feature. The issue has been fixed in dropwizard-validation 1.3.19 and 2.0.2.

8.9 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.4%