Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28824
HistoryDec 28, 2020 - 4:31 a.m.

Remote Code Execution (RCE)

2020-12-2804:31:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4
vulnerability
browserup proxy
remote code execution
java el expressions
server-side template

EPSS

0.056

Percentile

93.3%

BrowserUp Proxy is vulnerable to remote code execution. An attacker is able to exploit the vulnerability by injecting arbitrary Java EL expressions into the server-side template.

EPSS

0.056

Percentile

93.3%