Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20534
HistoryJun 13, 2019 - 2:57 a.m.

Remote Code Execution (RCE)

2019-06-1302:57:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.021 Low

EPSS

Percentile

89.3%

Charka Core is vulnerable to Remote Code Execution. This is due to an improper type-check when the engine handles objects in memory. This allows an attacker to execute arbitrary codes with user permission. If the user has admin rights, the attacker can potentially take control of the system.