CVE Database
/

CVE-2010-20120

Back to search

CVE-2010-20120

Published: Aug 21, 2025

Modified: May 15, 2026

PUBLISHED

Description

Maple versions up to and including 13's Maplet framework allows embedded commands to be executed automatically when a .maplet file is opened. This behavior bypasses standard security restrictions that normally prevent code execution in regular Maple worksheets. The vulnerability enables attackers to craft malicious .maplet files that execute arbitrary code without user interaction.

VendorProductVersions

Maplesoft

Maple

affected
0 - <= 13

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now